CVE-2024-28021: High severity hitachi energy foxman un vulnerability
A vulnerability exists in the FOXMAN-UN/UNEM server that affects the message queueing mechanism’s certificate validation. If exploited an attacker could spoof a trusted entity causing a loss of confidentiality and integrity.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-28021?
CVE-2024-28021 has a high severity rating due to the potential for confidentiality and integrity loss when exploited.
How do I fix CVE-2024-28021?
To fix CVE-2024-28021, apply the latest patches provided by Hitachi Energy for affected versions of FOXMAN-UN and UNEM software.
Which versions are affected by CVE-2024-28021?
CVE-2024-28021 affects FOXMAN-UN versions r15b-pc4 and r16b-pc2, and UNEM versions r15a, r15b-pc4, r16a, and r16b-pc2.
What type of attack can exploit CVE-2024-28021?
CVE-2024-28021 can be exploited to spoof a trusted entity, compromising the system’s message queueing mechanism.
Is there a workaround for CVE-2024-28021?
Currently, no official workarounds are provided for CVE-2024-28021, and users are advised to apply patches as soon as they become available.