CVE-2024-28021

HIGH

FOXMAN-UN/UNEM - Improper Certificate Validation in Message Queueing Mechanism

Title source: llm
STIX 2.1

Description

A vulnerability exists in the FOXMAN-UN/UNEM server that affects the message queueing mechanism’s certificate validation. If exploited an attacker could spoof a trusted entity causing a loss of confidentiality and integrity.

Scores

CVSS v3 7.4
EPSS 0.0027
EPSS Percentile 18.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-295
Status published
Products (8)
hitachienergy/foxman-un r15b pc4
hitachienergy/foxman-un r16b pc2
hitachienergy/foxman_un r15a
hitachienergy/foxman_un r16a
hitachienergy/unem r15a
hitachienergy/unem r15b pc4
hitachienergy/unem r16a
hitachienergy/unem r16b pc2
Published Jun 11, 2024
Tracked Since Feb 18, 2026