A user/password reuse vulnerability exists in the FOXMAN-UN/UNEM application
and server management. If exploited a malicious high-privileged
user could use the passwords and login information through complex routines to extend access on the server and other services.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-25194 A user/password reuse vulnerability exists in the FOXMAN-UN/UNEM application and server management. If exploited a malicious high-privileged user could use the passwords and login information through complex routines to extend access on the server and other services.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 29 Oct 2024 15:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:hitachienergy:foxman-un:*:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:unem:*:*:*:*:*:*:*:*
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 29 Oct 2024 14:45:00 +0000

Type Values Removed Values Added
Description A user/password reuse vulnerability exists in the FOXMAN-UN/UNEMĀ  application and server management. If exploited a malicious user could use the passwords and login information to extend access on the server and other services. A user/password reuse vulnerability exists in the FOXMAN-UN/UNEM application and server management. If exploited a malicious high-privileged user could use the passwords and login information through complex routines to extend access on the server and other services.

Wed, 09 Oct 2024 17:30:00 +0000

Type Values Removed Values Added
First Time appeared Hitachienergy foxman-un
CPEs cpe:2.3:a:hitachienergy:foxman_un:r15a:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman_un:r15b:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman_un:r16a:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman_un:r16b:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman-un:r15a:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman-un:r15b:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman-un:r16a:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman-un:r16b:*:*:*:*:*:*:*
Vendors & Products Hitachienergy foxman Un
Hitachienergy foxman-un

Thu, 15 Aug 2024 22:00:00 +0000

Type Values Removed Values Added
First Time appeared Hitachienergy
Hitachienergy foxman Un
Hitachienergy unem
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:hitachienergy:foxman_un:r15a:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman_un:r15b:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman_un:r16a:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:foxman_un:r16b:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:unem:r15a:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:unem:r15b:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:unem:r16a:*:*:*:*:*:*:*
cpe:2.3:a:hitachienergy:unem:r16b:*:*:*:*:*:*:*
Vendors & Products Hitachienergy
Hitachienergy foxman Un
Hitachienergy unem

cve-icon MITRE

Status: PUBLISHED

Assigner: Hitachi Energy

Published:

Updated: 2024-10-29T14:22:19.869Z

Reserved: 2024-02-29T13:42:00.745Z

Link: CVE-2024-28020

cve-icon Vulnrichment

Updated: 2024-08-02T00:48:47.637Z

cve-icon NVD

Status : Modified

Published: 2024-06-11T19:16:05.787

Modified: 2024-11-21T09:05:39.310

Link: CVE-2024-28020

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.