CVE-2024-6400

Cleartext Storage of Sensitive Information vulnerability in Finrota Netahsilat allows Retrieve Embedded Sensitive Data.This issue solved in versions 1.21.10, 1.23.01, 1.23.08, 1.23.11 and 1.24.03.
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-24-1611 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:finrota:finrota:*:*:*:*:*:*:*:*

History

12 Nov 2024, 19:32

Type Values Removed Values Added
CPE cpe:2.3:a:finrota:finrota:*:*:*:*:*:*:*:*
References () https://www.usom.gov.tr/bildirim/tr-24-1611 - () https://www.usom.gov.tr/bildirim/tr-24-1611 - Third Party Advisory
Summary
  • (es) La vulnerabilidad de almacenamiento de información confidencial en texto plano en Finrota Netahsilat permite recuperar datos confidenciales integrados. Este problema se resolvió en las versiones 1.21.10, 1.23.01, 1.23.08, 1.23.11 y 1.24.03.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Finrota finrota
Finrota

04 Oct 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-04 12:15

Updated : 2024-11-12 19:32


NVD link : CVE-2024-6400

Mitre link : CVE-2024-6400

CVE.ORG link : CVE-2024-6400


JSON object : View

Products Affected

finrota

  • finrota
CWE
CWE-202

Exposure of Sensitive Information Through Data Queries

CWE-311

Missing Encryption of Sensitive Data

CWE-312

Cleartext Storage of Sensitive Information