An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a remote attacker to perform a Traffic Injection attack due to improper verification of the source of a communication channel.
History

Tue, 10 Sep 2024 17:00:00 +0000

Type Values Removed Values Added
Weaknesses NVD-CWE-Other

Mon, 12 Aug 2024 20:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:horizoncloud:caterease:16.0.1.1663:*:*:*:*:*:*:* cpe:2.3:a:horizoncloud:caterease:*:*:*:*:*:*:*:*

Wed, 07 Aug 2024 15:45:00 +0000


Tue, 06 Aug 2024 23:30:00 +0000

Type Values Removed Values Added
First Time appeared Horizoncloud
Horizoncloud caterease
Weaknesses CWE-940
CPEs cpe:2.3:a:horizoncloud:caterease:16.0.1.1663:*:*:*:*:*:*:*
Vendors & Products Horizoncloud
Horizoncloud caterease
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-08-02T00:00:00

Updated: 2024-08-12T19:57:21.532Z

Reserved: 2024-06-21T00:00:00

Link: CVE-2024-38886

cve-icon Vulnrichment

Updated: 2024-08-06T16:05:41.665Z

cve-icon NVD

Status : Analyzed

Published: 2024-08-02T18:16:19.660

Modified: 2024-09-10T16:40:38.390

Link: CVE-2024-38886

cve-icon Redhat

No data.