{ "id": "CVE-2024-25654", "sourceIdentifier": "cve@mitre.org", "published": "2024-03-18T20:15:08.867", "lastModified": "2024-03-19T13:26:46.000", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Insecure permissions for log files of AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS allow members (with local access to the UMP application server) to access credentials to authenticate to all services, and to decrypt sensitive data stored in the database." }, { "lang": "es", "value": "Los permisos inseguros para archivos de registro de AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS permiten a los miembros (con acceso local al servidor de aplicaciones UMP) acceder a las credenciales para autenticarse en todos los servicios y descifrar datos confidenciales almacenados en la base de datos." } ], "metrics": {}, "references": [ { "url": "https://www.cvcn.gov.it/cvcn/cve/CVE-2024-25654", "source": "cve@mitre.org" } ] }