A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-05-14 16:16
Updated : 2024-07-04 07:15
NVD link : CVE-2024-31486
Mitre link : CVE-2024-31486
CVE.ORG link : CVE-2024-31486
JSON object : View
Products Affected
No product.
CWE
CWE-312
Cleartext Storage of Sensitive Information