OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read arbitrary system configurations. If LDAP authentication is enabled, attackers can obtain plaintext credentials.
Metrics
Affected Vendors & Products
References
History
Fri, 20 Sep 2024 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-522 |
Mon, 16 Sep 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Syscomgo
Syscomgo omflow |
|
CPEs | cpe:2.3:a:syscomgo:omflow:*:*:*:*:*:*:*:* | |
Vendors & Products |
Syscomgo
Syscomgo omflow |
|
Metrics |
ssvc
|
Mon, 16 Sep 2024 06:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read arbitrary system configurations. If LDAP authentication is enabled, attackers can obtain plaintext credentials. | |
Title | The SYSCOM Group OMFLOW - Information Leakage | |
Weaknesses | CWE-200 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2024-09-16T05:44:58.426Z
Updated: 2024-09-16T13:53:24.712Z
Reserved: 2024-09-13T09:43:46.111Z
Link: CVE-2024-8777
Vulnrichment
Updated: 2024-09-16T13:53:19.090Z
NVD
Status : Analyzed
Published: 2024-09-16T06:15:11.483
Modified: 2024-09-20T14:22:19.840
Link: CVE-2024-8777
Redhat
No data.