ZeroHour

CVE-2024-36497

CVSS 3.1
9.1 critical
EPSS
<1%p39
Published
()
Modified
Description

The decrypted configuration file contains the password in cleartext which is used to configure WINSelect. It can be used to remove the existing restrictions and disable WINSelect entirely.

Weakness
CWE-312
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.