Description

A “CWE-201: Insertion of Sensitive Information Into Sent Data” affecting the administrative account allows an attacker with physical access to the machine to retrieve the password in cleartext when an administrative session is open in the browser.

INFO

Published Date :

2024-07-31T13:16:57.751Z

Last Modified :

2024-07-31T14:21:55.581Z

Source :

Nozomi
AFFECTED PRODUCTS

The following products are affected by CVE-2024-31200 vulnerability.

Vendors Products
Proges
  • Sensor Net Connect Firmware V2
  • Sensor Net Connect V2
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-31200.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact