First published: Sun Jun 02 2024(Updated: )
MileSight DeviceHub - CWE-330 Use of Insufficiently Random Values may allow Authentication Bypass
Credit: cna@cyber.gov.il
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Milesight DeviceHub | =3.0.1-r1 | |
Ubuntu | =20.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-36389 is classified as having a medium severity level due to the potential for authentication bypass.
To fix CVE-2024-36389, update MileSight DeviceHub to the latest version that addresses this vulnerability.
CVE-2024-36389 can allow unauthorized users to bypass authentication, leading to unauthorized access to the device.
MileSight DeviceHub version 3.0.1-r1 is affected by CVE-2024-36389.
CVE-2024-36389 specifically affects MileSight DeviceHub and is not directly associated with vulnerabilities in Ubuntu.