PT-2024-5522 · Unknown · Exacqvision Web Service

Diego Zaffaroni

·

Published

2024-08-01

·

Updated

2024-08-09

·

CVE-2024-32931

CVSS v3.1

5.7

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions exacqVision Web Service (affected versions not specified)
Description The issue is related to the exposure of authentication token details within communications under certain circumstances. This can occur when the exacqVision Web Service handles authentication tokens, potentially allowing an attacker to gain unauthorized access to protected information. The vulnerability is associated with the disclosure of information via query strings during authentication token processing.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2024-06171
CVE-2024-32931

Affected Products

Exacqvision Web Service