Home

Description

A low privileged remote attacker can gain the root password due to improper removal of sensitive information before storage or transfer.

PUBLISHED Reserved 2024-08-12 | Published 2026-05-07 | Updated 2026-05-07 | Assigner CERTVDE




HIGH: 8.0CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Problem types

CWE-212 Improper Removal of Sensitive Information Before Storage or Transfer

Product status

Default status
unaffected

Any version before 10.4.1
affected

Default status
unaffected

Any version before 10.4.1
affected

Default status
unaffected

Any version before 10.4.1
affected

Default status
unaffected

Any version before 10.4.1
affected

Default status
unaffected

Any version before 10.4.1
affected

Default status
unaffected

Any version before 10.4.1
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Default status
unaffected

Any version before 8.9.3
affected

Credits

Andrea Palanca finder

Nozomi Networks Security Research Team reporter

References

certvde.com/en/advisories/VDE-2024-039

cve.org (CVE-2024-43384)

nvd.nist.gov (CVE-2024-43384)

Download JSON