Dorsett Controls Central Server update server has potential information
leaks with an unprotected file that contains passwords and API keys.
Metrics
Affected Vendors & Products
References
History
Thu, 29 Aug 2024 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | NVD-CWE-noinfo |
Thu, 08 Aug 2024 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Dorsettcontrols
Dorsettcontrols infoscan |
|
CPEs | cpe:2.3:a:dorsettcontrols:infoscan:1.32:*:*:*:*:*:*:* cpe:2.3:a:dorsettcontrols:infoscan:1.33:*:*:*:*:*:*:* cpe:2.3:a:dorsettcontrols:infoscan:1.35:*:*:*:*:*:*:* |
|
Vendors & Products |
Dorsettcontrols
Dorsettcontrols infoscan |
|
Metrics |
ssvc
|
Thu, 08 Aug 2024 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Dorsett Controls Central Server update server has potential information leaks with an unprotected file that contains passwords and API keys. | |
Title | Dorsett Controls InfoScan Exposure of Sensitive Information To An Unauthorized Actor | |
Weaknesses | CWE-200 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2024-08-08T17:25:04.027Z
Updated: 2024-08-08T18:08:03.552Z
Reserved: 2024-08-05T16:34:29.408Z
Link: CVE-2024-39287
Vulnrichment
Updated: 2024-08-08T18:07:18.073Z
NVD
Status : Analyzed
Published: 2024-08-08T18:15:10.380
Modified: 2024-08-29T14:23:31.807
Link: CVE-2024-39287
Redhat
No data.