PT-2019-2400 · Open Cit · Open Cit

Published

2019-06-11

·

Updated

2023-02-27

·

CVE-2019-0177

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Open CIT (affected versions not specified)
Description The issue is related to insufficient password protection in the attestation database for Open CIT, which may allow an authenticated user to potentially enable information disclosure via local access. This is due to inadequate input validation during the host attestation process. Exploitation of this issue could allow an attacker to disclose protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2019-02176
CVE-2019-0177

Affected Products

Open Cit