PT-2024-28929 · Pentaminds · Pentaminds Curovms

Published

2024-12-09

·

Updated

2024-12-11

·

CVE-2024-40583

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Pentaminds CuroVMS version 2.0.1
Description The issue is related to exposed credentials in the software. This means that sensitive information, such as passwords or other authentication data, is not properly secured and can be accessed by unauthorized parties.
Recommendations For Pentaminds CuroVMS version 2.0.1, consider changing all exposed credentials and restricting access to sensitive areas of the system until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

CVE-2024-40583

Affected Products

Pentaminds Curovms