CVE-2024-32042

MEDIUM

CyberPower PowerPanel - Info Disclosure

Title source: llm
STIX 2.1

Description

The key used to encrypt passwords stored in the database can be found in the CyberPower PowerPanel application code, allowing the passwords to be recovered.

Scores

CVSS v3 4.9
EPSS 0.0018
EPSS Percentile 38.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-257
Status published
Products (1)
cyberpower/powerpanel < 4.9.0
Published May 15, 2024
Tracked Since Feb 18, 2026