CVE Published: 31/07/2024 |
CVE Updated: 30/09/2024 |
CVE Year: 2024 Source: Nozomi |
Vendor: Plug&Track |
Product: Sensor Net Connect V2 Status : PUBLISHED
CVE-2024-3082 Description
A “CWE-256: Plaintext Storage of a Password” affecting the administrative account allows an attacker with physical access to the machine to retrieve the password in cleartext unless specific security measures at other layers (e.g., full-disk encryption) have been enabled.
Metrics
CVSS Version: 3.1 |
Base Score: 4.2 MEDIUM Vector: CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N