Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Roman Mazurak

Researcher fromInfineon
#50307of 53,633
4.7Total CVSS
Vulnerabilities · 1
PT-2024-14256
4.7
2024-09-05
Unknown · Trusted Firmware-M · CVE-2023-51712
**Name of the Vulnerable Software and Affected Versions** Trusted Firmware-M versions through 2.0.0 **Description** An issue was discovered in the logging subsystem of Trusted Firmware-M, where the lack of argument verification allows attackers to read sensitive data via the login function. **Recommendations** For versions through 2.0.0, consider disabling the login function until a patch is available to prevent attackers from reading sensitive data. At the moment, there is no information about a newer version that contains a fix for this vulnerability.