Sploitus

CVE-2024-27154

1 known exploit for CVE-2024-27154

Passwords are stored in clear-text logs. An attacker can retrieve passwords. As for the affected products/models/versions, see the reference URL.

CVSS 3.1
6.2 MEDIUM
EPSS
0.3% (17th percentile)
Weakness
CWE-532
NVD status
Deferred
Published
2024-06-14
Attack patterns
CAPEC-37
Entry point
csrfpId request body
Path
contentwebserver

Fix

This issue is fixed in the version released on June 14, 2024 and all later versions.

CVE-2024-27154 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2024-27154

Proof-of-concept code and exploit modules indexed by Sploitus