Use of Hard-coded Password
CVE-2024-28023
Summary
A vulnerability exists in the message queueing mechanism that if exploited can lead to the exposure of resources or functionality to unintended actors, possibly providing attackers with sensitive information or even execute arbitrary code.
- LOW
- LOCAL
- LOW
- CHANGED
- NONE
- HIGH
- LOW
- LOW
CWE-259 - Use of Hard-coded Password
The software contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.
References
Advisory Timeline
- Published