Metrics
Affected Vendors & Products
Thu, 17 Oct 2024 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The goTenna pro series does not encrypt the callsigns of its users. These callsigns reveal information about the users and can also be leveraged for other vulnerabilities. | The goTenna Pro App does not encrypt callsigns in messages. It is recommended to not use sensitive information in callsigns when using this and previous versions of the app and update your app to the current app version which uses AES-256 encryption for callsigns in encrypted operation. |
Metrics |
cvssV3_1
|
cvssV3_1
|
Mon, 07 Oct 2024 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:gotenna:gotenna_pro:*:*:*:*:*:android:*:* cpe:2.3:a:gotenna:gotenna_pro:*:*:*:*:*:iphone_os:*:* |
Mon, 07 Oct 2024 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Gotenna
Gotenna gotenna Pro |
|
CPEs | cpe:2.3:a:gotenna:gotenna_pro:*:*:*:*:*:*:*:* | |
Vendors & Products |
Gotenna
Gotenna gotenna Pro |
|
Metrics |
cvssV3_1
|
Thu, 26 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 26 Sep 2024 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The goTenna pro series does not encrypt the callsigns of its users. These callsigns reveal information about the users and can also be leveraged for other vulnerabilities. | |
Title | Cleartext Transmission of Sensitive Information in goTenna Pro | |
Weaknesses | CWE-319 | |
References |
| |
Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published: 2024-09-26T17:21:29.975Z
Updated: 2024-10-17T17:28:21.392Z
Reserved: 2024-09-18T21:32:27.325Z
Link: CVE-2024-47124
Updated: 2024-09-26T18:27:30.707Z
Status : Modified
Published: 2024-09-26T18:15:09.310
Modified: 2024-10-17T18:15:05.900
Link: CVE-2024-47124
No data.