CVE Published: 26/09/2024 |
CVE Updated: 17/10/2024 |
CVE Year: 2024 Source: icscert |
Vendor: goTenna |
Product: Pro ATAK Plugin Status : PUBLISHED
CVE-2024-45838 Description
The goTenna Pro ATAK Plugin does not encrypt callsigns in messages. It
is advised to not use sensitive information in callsigns when using this
and previous versions of the plugin. Update to current plugin version
which uses AES-256 encryption for callsigns in encrypted operation
Metrics
CVSS Version: 3.1 |
Base Score: 4.3 MEDIUM Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N