Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-49409 | OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read arbitrary system configurations. If LDAP authentication is enabled, attackers can obtain plaintext credentials. |
Solution
Update to version 1.2.1.3 or later.
Workaround
No workaround given by the vendor.
Fri, 20 Sep 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-522 |
Mon, 16 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Syscomgo
Syscomgo omflow |
|
| CPEs | cpe:2.3:a:syscomgo:omflow:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Syscomgo
Syscomgo omflow |
|
| Metrics |
ssvc
|
Mon, 16 Sep 2024 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read arbitrary system configurations. If LDAP authentication is enabled, attackers can obtain plaintext credentials. | |
| Title | The SYSCOM Group OMFLOW - Information Leakage | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-16T13:53:24.712Z
Reserved: 2024-09-13T09:43:46.111Z
Link: CVE-2024-8777
Updated: 2024-09-16T13:53:19.090Z
Status : Analyzed
Published: 2024-09-16T06:15:11.483
Modified: 2024-09-20T14:22:19.840
Link: CVE-2024-8777
No data.
OpenCVE Enrichment
No data.
EUVD