OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read arbitrary system configurations. If LDAP authentication is enabled, attackers can obtain plaintext credentials.
Metrics
Affected Vendors & Products
References
History
Fri, 20 Sep 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-522 |
Mon, 16 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Syscomgo
Syscomgo omflow |
|
| CPEs | cpe:2.3:a:syscomgo:omflow:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Syscomgo
Syscomgo omflow |
|
| Metrics |
ssvc
|
Mon, 16 Sep 2024 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read arbitrary system configurations. If LDAP authentication is enabled, attackers can obtain plaintext credentials. | |
| Title | The SYSCOM Group OMFLOW - Information Leakage | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published: 2024-09-16T05:44:58.426Z
Updated: 2024-09-16T13:53:24.712Z
Reserved: 2024-09-13T09:43:46.111Z
Link: CVE-2024-8777
Updated: 2024-09-16T13:53:19.090Z
Status : Analyzed
Published: 2024-09-16T06:15:11.483
Modified: 2024-09-20T14:22:19.840
Link: CVE-2024-8777
No data.