nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-28020 CVE-2024-28020
HIGH
Record summary
CVE-2024-28020 has a selected CVSS score of 8.0 (high).
Description
A user/password reuse vulnerability exists in the FOXMAN-UN/UNEM application and server management. If exploited a malicious high-privileged user could use the passwords and login information through complex routines to extend access on the server and other services.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Jun 11, 2024 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
FOXMAN-UNBrowse Hitachi Energy / FOXMAN-UNDefault status: unaffected | CVE List | FOXMAN-UN R16B | affected |
| FOXMAN-UN R15B | affected | ||
| FOXMAN-UN R16A | affected | ||
| FOXMAN-UN R15A | affected | ||
| r16b | affected | ||
| r15b | affected | ||
| r15a | affected | ||
| r16a | affected | ||
Default status: unaffected | CVE List | UNEM R16B | affected |
| UNEM R15B | affected | ||
| UNEM R16A | affected | ||
| UNEM R15A | affected | ||
| r15b | affected | ||
| r16b | affected | ||
| r15a | affected | ||
| r16a | affected |
References
3publisher.hitachienergy.com
https://publisher.hitachienergy.com/preview?DocumentId=8DBD000194&languageCode=en&Preview=true publisher.hitachienergy.com
https://publisher.hitachienergy.com/preview?DocumentId=8DBD000201&languageCode=en&Preview=true