CVE-2024-31410

The devices which CyberPower PowerPanel manages use identical certificates based on a hard-coded cryptographic key. This can allow an attacker to impersonate any client in the system and send malicious data.
Configurations

No configuration.

History

16 May 2024, 13:03

Type Values Removed Values Added
Summary
  • (es) Los dispositivos que gestiona CyberPower PowerPanel utilizan certificados idénticos basados en una clave criptográfica codificada. Esto puede permitir que un atacante se haga pasar por cualquier cliente del sistema y envíe datos maliciosos.

15 May 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-15 20:15

Updated : 2024-05-16 13:03


NVD link : CVE-2024-31410

Mitre link : CVE-2024-31410

CVE.ORG link : CVE-2024-31410


JSON object : View

Products Affected

No product.

CWE
CWE-321

Use of Hard-coded Cryptographic Key