Skip to main content

Use of Hard-coded Password

CVE-2024-28023

Severity Medium
Score 5.7/10

Summary

A vulnerability exists in the message queueing mechanism that if exploited can lead to the exposure of resources or functionality to unintended actors, possibly providing attackers with sensitive information or even execute arbitrary code.

  • LOW
  • LOCAL
  • LOW
  • CHANGED
  • NONE
  • HIGH
  • LOW
  • LOW

CWE-259 - Use of Hard-coded Password

The software contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.

References

Advisory Timeline

  • Published