CVE-2024-21881
EUVD-2024-1949212.08.2024, 13:38
Inadequate Encryption Strength vulnerability allow an authenticated attacker to execute arbitrary OS Commands via encrypted package upload.This issue affects Envoy: 4.x and 5.xEnginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| enphase | envoy | 5.0 ≤ 𝑥 < 6.0 | CNA |
| enphase | envoy | 4.0 ≤ 𝑥 < 5.0 | CNA |
Common Weakness Enumeration