Lucene search

K
cve[email protected]CVE-2024-22028
HistoryJan 15, 2024 - 7:15 a.m.

CVE-2024-22028

2024-01-1507:15:09
web.nvd.nist.gov
11
cve-2024-22028
technical documentation
thermal camera
firmware
data privacy
physical security

4.6 Medium

CVSS3

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

4.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.9%

Insufficient technical documentation issue exists in thermal camera TMC series all firmware versions. The user of the affected product is not aware of the internally saved data. By accessing the affected product physically, an attacker may retrieve the internal data.

Affected configurations

NVD
Node
3rrr-btob3r-tmc01Match-
AND
3rrr-btob3r-tmc01_firmware
Node
3rrr-btob3r-tmc02Match-
AND
3rrr-btob3r-tmc02_firmware
Node
3rrr-btob3r-tmc03Match-
AND
3rrr-btob3r-tmc03_firmware
Node
3rrr-btob3r-tmc04Match-
AND
3rrr-btob3r-tmc04_firmware
Node
3rrr-btob3r-tmc05Match-
AND
3rrr-btob3r-tmc05_firmware
Node
3rrr-btob3r-tmc06Match-
AND
3rrr-btob3r-tmc06_firmware

CNA Affected

[
  {
    "vendor": "THREE R SOLUTION CORP. JAPAN",
    "product": "3R-TMC01",
    "versions": [
      {
        "version": "all firmware versions",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "THREE R SOLUTION CORP. JAPAN",
    "product": "3R-TMC02",
    "versions": [
      {
        "version": "all firmware versions",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "THREE R SOLUTION CORP. JAPAN",
    "product": "3R-TMC03",
    "versions": [
      {
        "version": "all firmware versions",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "THREE R SOLUTION CORP. JAPAN",
    "product": "3R-TMC04",
    "versions": [
      {
        "version": "all firmware versions",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "THREE R SOLUTION CORP. JAPAN",
    "product": "3R-TMC05",
    "versions": [
      {
        "version": "all firmware versions",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "THREE R SOLUTION CORP. JAPAN",
    "product": "3R-TMC06",
    "versions": [
      {
        "version": "all firmware versions",
        "status": "affected"
      }
    ]
  }
]

4.6 Medium

CVSS3

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

4.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.9%

Related for CVE-2024-22028