Description

A vulnerability in Cisco Duo Epic for Hyperdrive could allow an authenticated, local attacker to view sensitive information in cleartext on an affected system. This vulnerability is due to improper storage of an unencrypted registry key. A low-privileged attacker could exploit this vulnerability by viewing or querying the registry key on the affected system. A successful exploit could allow the attacker to view sensitive information in cleartext.

INFO

Published Date :

2024-09-04T16:29:04.566Z

Last Modified :

2024-09-04T17:34:14.677Z

Source :

cisco
AFFECTED PRODUCTS

The following products are affected by CVE-2024-20503 vulnerability.

Vendors Products
Cisco
  • Duo Authentication For Epic
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-20503.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact