PT-2024-8135 · Unknown · Harmony Industrial Pc Series

Published

2024-10-08

·

Updated

2025-02-11

·

CVE-2024-8884

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Harmony Industrial PC series (affected versions not specified)
Description: The issue is related to the exposure of sensitive information to an unauthorized actor, which could cause exposure of credentials when an attacker has access to the application on the network over http. This is due to the lack of protection for service data. The estimated number of potentially affected devices worldwide is not available. There are reports of real-world incidents where this issue was exploited.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2024-09676
CVE-2024-8884

Affected Products

Harmony Industrial Pc Series