Description
An unauthenticated remote attacker may use the devices traffic capture without authentication to grab plaintext administrative credentials.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-35266 | An unauthenticated remote attacker may use the devices traffic capture without authentication to grab plaintext administrative credentials. |
References
History
Wed, 02 Oct 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 02 Oct 2024 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An unauthenticated remote attacker may use the devices traffic capture without authentication to grab plaintext administrative credentials. | |
| Title | Schneider Elektronik Series 700 prone to missing authentication for traffic capture function | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-10-02T14:45:50.382Z
Reserved: 2024-05-15T12:37:05.393Z
Link: CVE-2024-35294
Updated: 2024-10-02T14:45:44.718Z
Status : Deferred
Published: 2024-10-02T11:15:10.780
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-35294
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD