Description

The affected product is vulnerable to a cleartext transmission of sensitive information vulnerability, which may allow an attacker to capture packets to craft their own requests.

Published: 2024-03-14
Score: 8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update Softing edgeConnector and edgeAggregator to v3.70 or greater.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-16643 The affected product is vulnerable to a cleartext transmission of sensitive information vulnerability, which may allow an attacker to capture packets to craft their own requests.
History

Thu, 23 Jan 2025 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Softing
Softing edgeaggregator
Softing edgeconnector
CPEs cpe:2.3:a:softing:edgeaggregator:3.60:*:*:*:*:*:*:*
cpe:2.3:a:softing:edgeconnector:3.60:*:*:*:*:*:*:*
Vendors & Products Softing
Softing edgeaggregator
Softing edgeconnector

Subscriptions

Softing Edgeaggregator Edgeconnector
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-12T20:30:17.682Z

Reserved: 2024-01-24T15:13:18.203Z

Link: CVE-2024-0860

cve-icon Vulnrichment

Updated: 2024-08-01T18:18:18.751Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-14T21:15:50.640

Modified: 2025-01-23T19:56:53.883

Link: CVE-2024-0860

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses