PT-2024-29989 · Hughes Network Systems+1 · Wl3000 Fusion+1
Published
2024-09-05
·
Updated
2024-10-04
·
CVE-2024-42495
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
No specific software or versions are mentioned in the provided descriptions.
Description
The issue involves credentials to access device configuration being transmitted using an unencrypted protocol. This allows read-only access to network configuration information and terminal configuration data.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Missing Encryption of Sensitive Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wl3000 Fusion
Fusion