ZeroHour

CVE-2024-22388

CVSS 3.1
7.8 high
EPSS
<1%p6
Published
()
Modified
Description

Certain configuration available in the communication channel for encoders could expose sensitive data when reader configuration cards are programmed. This data could include credential and device administration keys.

Vendors
hidglobal
Products
iclass se cp1000 encoder firmware, iclass se readers firmware, iclass se reader modules firmware, iclass se processors firmware, omnikey 5427ck firmware, omnikey 5127ck firmware, omnikey 5023 firmware, omnikey 5027 firmware
Weakness
CWE-1188
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.