CVE-2024-22028
Last modified
CVE-2024-22028 is a medium-severity vulnerability rated 4.6/10 on the CVSS scale. Insufficient technical documentation issue exists in thermal camera TMC series all firmware versions. The user of the affected product is not aware of the internally saved data. EPSS estimates a 0.24% chance of exploitation in the next 30 days.
Description
Insufficient technical documentation issue exists in thermal camera TMC series all firmware versions. The user of the affected product is not aware of the internally saved data. By accessing the affected product physically, an attacker may retrieve the internal data.
Metrics
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| 3rrr-Btob | 3r-Tmc01 Firmware | All versions |
| 3rrr-Btob | 3r-Tmc02 Firmware | All versions |
| 3rrr-Btob | 3r-Tmc03 Firmware | All versions |
| 3rrr-Btob | 3r-Tmc04 Firmware | All versions |
| 3rrr-Btob | 3r-Tmc05 Firmware | All versions |
| 3rrr-Btob | 3r-Tmc06 Firmware | All versions |
References
- https://jvn.jp/en/jp/JVN96240417/Third Party Advisory
- https://jvn.jp/en/jp/JVN96240417/Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2024-22028?
How severe is CVE-2024-22028?
How do I fix CVE-2024-22028?
Are you affected by CVE-2024-22028?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
