The FTP server used on the B&R
Automation Runtime supports unsecure encryption mechanisms, such as SSLv3,
TLSv1.0 and TLS1.1. An network-based attacker can exploit the flaws to conduct
man-in-the-middle attacks or to decrypt communications between the affected product
clients.
Metrics
Affected Vendors & Products
References
History
Fri, 06 Sep 2024 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-327 |
Fri, 06 Sep 2024 07:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-1240 |
MITRE
Status: PUBLISHED
Assigner: ABB
Published: 2024-02-05T16:05:47.612Z
Updated: 2024-09-06T07:21:29.270Z
Reserved: 2024-01-08T13:02:23.041Z
Link: CVE-2024-0323
Vulnrichment
Updated: 2024-08-01T18:04:49.140Z
NVD
Status : Modified
Published: 2024-02-05T16:15:54.980
Modified: 2024-11-21T08:46:19.440
Link: CVE-2024-0323
Redhat
No data.