CVE Vulnerabilities

CVE-2024-28387

Cleartext Storage of Sensitive Information

Published: Mar 25, 2024 | Modified: Sep 18, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue in axonaut v.3.1.23 and before allows a remote attacker to obtain sensitive information via the log.txt component.

Weakness

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

Affected Software

Name Vendor Start Version End Version
Axonaut Axonaut * 3.2.0 (excluding)

Potential Mitigations

References