exacqVison - HTTPS Session Establishment
CVE-2024-32864

8.1HIGH

Key Information:

Vendor
CVE Published:
1 August 2024

What is CVE-2024-32864?

The vulnerability in ExacqVision Web Services pertains to the potential failure to enforce secure web communications through HTTPS under specific conditions. This oversight could allow unauthorized access to sensitive information transmitted over the web, increasing the risk of data interception and manipulation. Users of affected versions should assess their exposure and take corrective measures to ensure proper implementation of security protocols.

Affected Version(s)

exacqVision 0 <= 24.03

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

Credit

Diego Zaffaroni from Nozomi Networks
.