CVE-2024-2728

CVSS 3.1 Score 4.5 of 10 (medium)

Details

Published Mar 22, 2024
CWE ID 502

Summary

CVE-2024-2728 is an information exposure vulnerability that affects the CIGESv2 system. A local attacker can exploit this vulnerability by intercepting traffic due to the inadequate implementation of the Transport Layer Security (TLS) protocol. This issue may allow unauthorized access to sensitive data, potentially leading to significant security risks. The vulnerability is a serious concern for organizations using the CIGESv2 system and should be addressed promptly through updates or patches provided by the system vendor. Failure to mitigate this vulnerability may result in potential data breaches or other cybersecurity incidents.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share