CVE-2024-12399
HIGHDescription
CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause partial loss of confidentiality, loss of integrity and availability of the HMI when attacker performs man in the middle attack by intercepting the communication.
CVSS v3.1 Score
Weakness Type (CWE)
References
Frequently Asked Questions
What is CVE-2024-12399? +
How severe is CVE-2024-12399? +
How do I check if I'm vulnerable to CVE-2024-12399? +
Related Vulnerabilities
A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before …
Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat messages using an …
RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response …
The vulnerability may allow a remote low priviledged attacker to run arbitrary shell commands by manipulating the firmware file and …
CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability exists that could cause a denial of …
An attacker could exploit the vulnerability by injecting garbage data or specially crafted data. Depending on the data injected each …