CVE-2024-28021
HIGHFOXMAN-UN/UNEM - Improper Certificate Validation in Message Queueing Mechanism
Title source: llmDescription
A vulnerability exists in the FOXMAN-UN/UNEM server that affects the message queueing mechanism’s certificate validation. If exploited an attacker could spoof a trusted entity causing a loss of confidentiality and integrity.
References (2)
Core 2
Core References
Scores
CVSS v3
7.4
EPSS
0.0027
EPSS Percentile
18.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-295
Status
published
Products (8)
hitachienergy/foxman-un
r15b pc4
hitachienergy/foxman-un
r16b pc2
hitachienergy/foxman_un
r15a
hitachienergy/foxman_un
r16a
hitachienergy/unem
r15a
hitachienergy/unem
r15b pc4
hitachienergy/unem
r16a
hitachienergy/unem
r16b pc2
Published
Jun 11, 2024
Tracked Since
Feb 18, 2026