Use of GET Request Method With Sensitive Query Strings
CVE-2024-9877
Summary
: Use of GET Request Method With Sensitive Query Strings vulnerability in ABB ANC, ABB ANC-L, ABB ANC-mini.This issue affects ANC: through 1.1.4; ANC-L: through 1.1.4; ANC-mini: through 1.1.4.
- LOW
- ADJACENT_NETWORK
- NONE
- UNCHANGED
- NONE
- NONE
- LOW
- NONE
CWE-598 - Use of GET Request Method With Sensitive Query Strings
The web application uses the HTTP GET method to process a request and includes sensitive information in the query string of that request.
References
Advisory Timeline
- Published