CVE-2024-13948: Insecure Permissions
Windows permissions for ASPECT configuration toolsets are not fully secured allow-ing exposure of configuration informationThis issue affects ASPECT-Enterprise: through 3.; NEXUS Series: through 3.; MATRIX Series: through 3..
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13948?
CVE-2024-13948 has been classified with a high severity due to the potential exposure of sensitive configuration information.
How do I fix CVE-2024-13948?
To fix CVE-2024-13948, ensure that permissions for the ASPECT configuration toolsets are properly configured to restrict access to authorized users only.
What products are affected by CVE-2024-13948?
CVE-2024-13948 affects ASPECT-Enterprise up to version 3.*, NEXUS Series up to version 3.*, and MATRIX Series up to version 3.*.
What risks are associated with CVE-2024-13948?
The risks associated with CVE-2024-13948 include unauthorized access to sensitive configuration data, which could lead to further exploitation or operational disruptions.
Is there a patch available for CVE-2024-13948?
As of now, there is no specific patch released for CVE-2024-13948, so users should implement the recommended security controls to mitigate the vulnerability.