Lucene search

K
cveJpcertCVE-2024-32051
HistoryApr 24, 2024 - 6:15 a.m.

CVE-2024-32051

2024-04-2406:15:14
CWE-200
CWE-532
jpcert
web.nvd.nist.gov
32
cve-2024-32051
information security
log file
vulnerability
network-adjacent attack
unauthenticated attacker
sensitive information

CVSS3

6.5

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

9.0%

Insertion of sensitive information into log file issue exists in RoamWiFi R10 prior to 4.8.45. If this vulnerability is exploited, a network-adjacent unauthenticated attacker with access to the device may obtain sensitive information.

Affected configurations

Vulners
Node
roamwifi_technology_co.\,_ltd.roamwifi_r10Range<4.8.45
VendorProductVersionCPE
roamwifi_technology_co.\,_ltd.roamwifi_r10*cpe:2.3:a:roamwifi_technology_co.\,_ltd.:roamwifi_r10:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "RoamWiFi Technology Co., Ltd.",
    "product": "RoamWiFi R10",
    "versions": [
      {
        "version": "prior to 4.8.45",
        "status": "affected"
      }
    ]
  }
]

CVSS3

6.5

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

AI Score

6.3

Confidence

Low

EPSS

0

Percentile

9.0%

Related for CVE-2024-32051