Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Kastle Systems have fixed the system configuration vulnerabilities internally. No user interaction is required.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41631 | Kastle Systems firmware prior to May 1, 2024, stored machine credentials in cleartext, which may allow an attacker to access sensitive information. |
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 30 Sep 2024 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kastle
Kastle access Control System Kastle access Control System Firmware |
|
| CPEs | cpe:2.3:h:kastle:access_control_system:-:*:*:*:*:*:*:* cpe:2.3:o:kastle:access_control_system_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Kastle
Kastle access Control System Kastle access Control System Firmware |
|
| Metrics |
cvssV3_1
|
Fri, 20 Sep 2024 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kastlesystems
Kastlesystems access Control System Firmware |
|
| CPEs | cpe:2.3:o:kastlesystems:access_control_system_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Kastlesystems
Kastlesystems access Control System Firmware |
|
| Metrics |
ssvc
|
ssvc
|
Thu, 19 Sep 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 19 Sep 2024 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kastle Systems firmware prior to May 1, 2024, stored machine credentials in cleartext, which may allow an attacker to access sensitive information. | |
| Title | Cleartext Storage of Sensitive Information in Kastle Systems Access Control System | |
| Weaknesses | CWE-312 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-09-20T13:03:08.919Z
Reserved: 2024-09-10T16:56:59.253Z
Link: CVE-2024-45862
Updated: 2024-09-19T17:49:53.029Z
Status : Analyzed
Published: 2024-09-19T16:15:05.227
Modified: 2024-09-30T19:33:30.750
Link: CVE-2024-45862
No data.
OpenCVE Enrichment
No data.
EUVD