Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-21372 | A local user may find a configuration file on the client workstation with unencrypted sensitive data. This allows an attacker to impersonate the device or prevent the device from accessing the cloud portal which leads to a DoS. |
| Link | Providers |
|---|---|
| https://cert.vde.com/en/advisories/VDE-2024-010 |
|
Wed, 20 Aug 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-311 |
Wed, 20 Aug 2025 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-312 |
Tue, 18 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 18 Mar 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A local user may find a configuration file on the client workstation with unencrypted sensitive data. This allows an attacker to impersonate the device or prevent the device from accessing the cloud portal which leads to a DoS. | |
| Title | MB connect line: Configuration File on the client workstation is not encrypted | |
| Weaknesses | CWE-311 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2025-08-20T06:11:05.971Z
Reserved: 2024-01-24T08:35:23.199Z
Link: CVE-2024-23942
Updated: 2025-03-18T13:15:03.231Z
Status : Deferred
Published: 2025-03-18T11:15:38.777
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-23942
No data.
OpenCVE Enrichment
No data.
EUVD