CVE-2024-5264

Network Transfer with AES KHT in Thales Luna EFT 2.1 and above allows a user with administrative console access to access backups taken via offline analysis
Configurations

Configuration 1 (hide)

cpe:2.3:a:thalesgroup:luna_eft:2.1:*:*:*:*:*:*:*

History

21 Jun 2024, 17:18

Type Values Removed Values Added
CPE cpe:2.3:a:thalesgroup:luna_eft:2.1:*:*:*:*:*:*:*
First Time Thalesgroup luna Eft
Thalesgroup
Summary
  • (es) La transferencia de red con AES KHT en Thales Luna EFT 2.1 y superior permite a un usuario con acceso a la consola administrativa acceder a las copias de seguridad realizadas mediante análisis fuera de línea.
References () https://supportportal.thalesgroup.com/csm?id=kb_article_view&sys_kb_id=50da3cd9c302c218204e2a6ce00131b9&sysparm_article=KB0028531 - () https://supportportal.thalesgroup.com/csm?id=kb_article_view&sys_kb_id=50da3cd9c302c218204e2a6ce00131b9&sysparm_article=KB0028531 - Permissions Required
CVSS v2 : unknown
v3 : 5.9
v2 : unknown
v3 : 6.5

23 May 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-23 09:15

Updated : 2024-06-21 17:18


NVD link : CVE-2024-5264

Mitre link : CVE-2024-5264

CVE.ORG link : CVE-2024-5264


JSON object : View

Products Affected

thalesgroup

  • luna_eft
CWE
CWE-338

Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)