CVE Vulnerabilities

CVE-2024-10943

Insecure Storage of Sensitive Information

Published: Nov 12, 2024 | Modified: Nov 12, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An authentication bypass vulnerability exists in the affected product. The vulnerability exists due to shared secrets across accounts and could allow a threat actor to impersonate a user if the threat actor is able to enumerate additional information required during authentication.

Weakness

The product stores sensitive information without properly limiting read or write access by unauthorized actors.

References