Description
A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-29366 | A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss. |
References
History
Mon, 03 Nov 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2025-11-03T20:37:15.279Z
Reserved: 2024-04-04T11:43:06.066Z
Link: CVE-2024-31486
Updated: 2025-11-03T20:37:15.279Z
Status : Deferred
Published: 2024-05-14T16:16:51.723
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-31486
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD