It appears that some hardcoded keys are used for authentication to internal API. Knowing these private keys may allow attackers to bypass authentication and reach administrative interfaces. As for the affected products/models/versions, see the reference URL.
References
Configurations
No configuration.
History
04 Jul 2024, 05:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
17 Jun 2024, 12:42
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
14 Jun 2024, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-14 04:15
Updated : 2024-07-04 05:15
NVD link : CVE-2024-27168
Mitre link : CVE-2024-27168
CVE.ORG link : CVE-2024-27168
JSON object : View
Products Affected
No product.
CWE
CWE-798
Use of Hard-coded Credentials