2024-06-13 18:03:11 +00:00
|
|
|
{
|
|
|
|
"id": "CVE-2024-38281",
|
|
|
|
"sourceIdentifier": "ics-cert@hq.dhs.gov",
|
|
|
|
"published": "2024-06-13T17:15:51.607",
|
2024-06-13 20:03:12 +00:00
|
|
|
"lastModified": "2024-06-13T18:35:19.777",
|
|
|
|
"vulnStatus": "Awaiting Analysis",
|
2024-06-13 18:03:11 +00:00
|
|
|
"descriptions": [
|
|
|
|
{
|
|
|
|
"lang": "en",
|
|
|
|
"value": "An attacker can access the maintenance console using hard coded credentials for a hidden wireless network on the device."
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"metrics": {},
|
|
|
|
"weaknesses": [
|
|
|
|
{
|
|
|
|
"source": "ics-cert@hq.dhs.gov",
|
|
|
|
"type": "Primary",
|
|
|
|
"description": [
|
|
|
|
{
|
|
|
|
"lang": "en",
|
|
|
|
"value": "CWE-798"
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"references": [
|
|
|
|
{
|
|
|
|
"url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-165-19",
|
|
|
|
"source": "ics-cert@hq.dhs.gov"
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|