CVE-2024-7408
Information Disclosure Vulnerability in Airveda Air Quality Monitor
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 8.6EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
09 ago 2024Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
This vulnerability exists in Airveda Air Quality Monitor PM2.5 PM10 due to transmission of sensitive information in plain text during AP pairing mode. An attacker in close proximity could exploit this vulnerability by capturing Wi-Fi traffic of Airveda-AP.
Successful exploitation of this vulnerability could allow the attacker to cause Evil Twin attack on the targeted system.
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:H/SC:H/SI:H/SA:H
Productos afectados
Airveda · Air Quality Monitor PM2.5 PM10¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →