We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-28021



Description

A vulnerability exists in the FOXMAN-UN/UNEM server that affects the message queueing mechanism’s certificate validation. If exploited an attacker could spoof a trusted entity causing a loss of confidentiality and integrity.

Reserved 2024-02-29 | Published 2024-06-11 | Updated 2024-10-29 | Assigner Hitachi Energy


HIGH: 7.4CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

Problem types

CWE-295 Improper Certificate Validation

Product status

Default status
unaffected

FOXMAN-UN R16B PC2
affected

FOXMAN-UN R16B PC3
unaffected

FOXMAN-UN R15B PC4
affected

FOXMAN-UN R15B PC5
unaffected

Default status
unaffected

UNEM R16B PC2
affected

UNEM R16B PC3
unaffected

UNEM R15B PC4
affected

UNEM R15B PC5
unaffected

References

publisher.hitachienergy.com/...&languageCode=en&Preview=true

publisher.hitachienergy.com/...&languageCode=en&Preview=true

cve.org (CVE-2024-28021)

nvd.nist.gov (CVE-2024-28021)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-28021

Support options

Helpdesk Chat, Email, Knowledgebase
Subscribe to our newsletter to learn more about our work.