mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-07-09 16:05:11 +00:00
72 lines
2.4 KiB
JSON
72 lines
2.4 KiB
JSON
{
|
|
"id": "CVE-2024-32754",
|
|
"sourceIdentifier": "productsecurity@jci.com",
|
|
"published": "2024-07-04T11:15:10.400",
|
|
"lastModified": "2024-11-21T09:15:39.657",
|
|
"vulnStatus": "Awaiting Analysis",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Under certain circumstances, when the controller is in factory reset mode waiting for initial setup, it will broadcast its MAC address, serial number, and firmware version. Once configured, the controller will no longer broadcast this information."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "En determinadas circunstancias, cuando el controlador est\u00e1 en modo de restablecimiento de f\u00e1brica esperando la configuraci\u00f3n inicial, transmitir\u00e1 su direcci\u00f3n MAC, n\u00famero de serie y versi\u00f3n de firmware. Una vez configurado, el controlador ya no transmitir\u00e1 esta informaci\u00f3n."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV31": [
|
|
{
|
|
"source": "productsecurity@jci.com",
|
|
"type": "Secondary",
|
|
"cvssData": {
|
|
"version": "3.1",
|
|
"vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N",
|
|
"baseScore": 3.1,
|
|
"baseSeverity": "LOW",
|
|
"attackVector": "ADJACENT_NETWORK",
|
|
"attackComplexity": "HIGH",
|
|
"privilegesRequired": "NONE",
|
|
"userInteraction": "NONE",
|
|
"scope": "UNCHANGED",
|
|
"confidentialityImpact": "LOW",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "NONE"
|
|
},
|
|
"exploitabilityScore": 1.6,
|
|
"impactScore": 1.4
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "productsecurity@jci.com",
|
|
"type": "Secondary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-200"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-184-01",
|
|
"source": "productsecurity@jci.com"
|
|
},
|
|
{
|
|
"url": "https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories",
|
|
"source": "productsecurity@jci.com"
|
|
},
|
|
{
|
|
"url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-184-01",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
}
|
|
]
|
|
} |