A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.
References
Configurations
No configuration.
History
04 Jul 2024, 07:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
11 Jun 2024, 12:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
14 May 2024, 16:16
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-14 16:16
Updated : 2024-07-04 07:15
NVD link : CVE-2024-31486
Mitre link : CVE-2024-31486
CVE.ORG link : CVE-2024-31486
JSON object : View
Products Affected
No product.
CWE
CWE-312
Cleartext Storage of Sensitive Information