CVE-2024-41156
LOWDescription
Profile files from TRO600 series radios are extracted in plain-text and encrypted file formats. Profile files provide potential attackers valuable configuration information about the Tropos network. Profiles can only be exported by authenticated users with higher privilege of write access.
Is your site exposed to CVE-2024-41156?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| hitachienergy | tro610_firmware |
| hitachienergy | tro610 |
| hitachienergy | tro620_firmware |
| hitachienergy | tro620 |
| hitachienergy | tro670_firmware |
| hitachienergy | tro670 |
References
Frequently Asked Questions
What is CVE-2024-41156? +
How severe is CVE-2024-41156? +
What products are affected by CVE-2024-41156? +
How do I check if I'm vulnerable to CVE-2024-41156? +
Related Vulnerabilities
Grype is a vulnerability scanner for container images and filesystems. A credential disclosure vulnerability was found in Grype, affecting versions …
kube-audit-rest is a simple logger of mutation/creation requests to the k8s api. If the "full-elastic-stack" example vector configuration was used …
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. From versions 3.2.0 to before 3.2.11 and 3.3.0 to …
A low privileged remote attacker can gain the root password due to improper removal of sensitive information before storage or …
In Argo CD 3.2.0 before 3.2.11 and 3.3.0 before 3.3.9, ServerSideDiff allows reading cleartext Kubernetes Secret data.
OpenBao is an open source identity-based secrets management system. Prior to 2.5.3, when OpenBao's initial namespace deletion fails, subsequent retries …