PT-2024-5766 · Unknown · Exacqvision Server+1

Reid Wightman

·

Published

2024-08-01

·

Updated

2024-08-09

·

CVE-2024-32758

CVSS v4.0

9.0

Critical

VectorAV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Name of the Vulnerable Software and Affected Versions exacqVision Client and exacqVision Server (affected versions not specified)
Description The issue is related to insufficient key length and exchange in the communication between exacqVision Client and exacqVision Server, which may allow a remote attacker to gain unauthorized access to protected information. The communication may use inadequate encryption, potentially compromising the security of the data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

BDU:2024-06479
CVE-2024-32758

Affected Products

Exacqvision Client
Exacqvision Server