We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-28020



Description

A user/password reuse vulnerability exists in the FOXMAN-UN/UNEM application and server management. If exploited a malicious high-privileged user could use the passwords and login information through complex routines to extend access on the server and other services.

Reserved 2024-02-29 | Published 2024-06-11 | Updated 2024-10-29 | Assigner Hitachi Energy


HIGH: 8.0CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H

Problem types

CWE-286 Incorrect User Management

Product status

Default status
unaffected

FOXMAN-UN R16B
affected

FOXMAN-UN R15B
affected

FOXMAN-UN R16A
affected

FOXMAN-UN R15A
affected

Default status
unaffected

UNEM R16B
affected

UNEM R15B
affected

UNEM R16A
affected

UNEM R15A
affected

References

publisher.hitachienergy.com/...&languageCode=en&Preview=true

publisher.hitachienergy.com/...&languageCode=en&Preview=true

cve.org (CVE-2024-28020)

nvd.nist.gov (CVE-2024-28020)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-28020

Support options

Helpdesk Chat, Email, Knowledgebase
Telegram Chat
Subscribe to our newsletter to learn more about our work.