CVE-2024-34542

Advantech ADAM-5630 shares user credentials plain text between the device and the user source device during the login process.
References
Link Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-24-270-02 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:advantech:adam-5630_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:advantech:adam-5630:-:*:*:*:*:*:*:*

History

07 Oct 2024, 15:20

Type Values Removed Values Added
First Time Advantech adam-5630
Advantech
Advantech adam-5630 Firmware
References () https://www.cisa.gov/news-events/ics-advisories/icsa-24-270-02 - () https://www.cisa.gov/news-events/ics-advisories/icsa-24-270-02 - Third Party Advisory, US Government Resource
CWE CWE-522
CPE cpe:2.3:o:advantech:adam-5630_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:advantech:adam-5630:-:*:*:*:*:*:*:*

30 Sep 2024, 12:45

Type Values Removed Values Added
Summary
  • (es) Advantech ADAM-5630 comparte credenciales de usuario en texto plano entre el dispositivo y el dispositivo de origen del usuario durante el proceso de inicio de sesión.

27 Sep 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-27 18:15

Updated : 2024-10-07 15:20


NVD link : CVE-2024-34542

Mitre link : CVE-2024-34542

CVE.ORG link : CVE-2024-34542


JSON object : View

Products Affected

advantech

  • adam-5630_firmware
  • adam-5630
CWE
CWE-522

Insufficiently Protected Credentials

CWE-261

Weak Encoding for Password