PT-2024-19381 · Hid Global · Omnikey 5023 Readers+15

Published

2024-02-06

·

Updated

2024-10-17

·

CVE-2024-22388

CVSS v3.1

5.9

Medium

VectorAV:L/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description The issue concerns certain configurations in the communication channel for encoders that could expose sensitive data when reader configuration cards are programmed. This sensitive data may include credentials and device administration keys.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2024-22388

Affected Products

Omnikey 5023 Readers
Omnikey 5027 Readers
Omnikey 5127Ck Readers
Omnikey 5427Ck Readers
Iclass Se Cp1000 Encoder
Iclass Se Processors
Iclass Se Reader Modules
Iclass Se Readers
Iclass Se Cp1000 Encoder Firmware
Iclass Se Processors Firmware
Iclass Se Reader Modules Firmware
Iclass Se Readers Firmware
Omnikey 5023 Firmware
Omnikey 5027 Firmware
Omnikey 5127Ck Firmware
Omnikey 5427Ck Firmware