CVE-2024-30119
14.06.2024, 22:15
HCL DRYiCE Optibot Reset Stationis impacted by a missing Strict Transport Security Header. This could allow an attacker to intercept or manipulate data during redirection.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration
- CWE-522 - Insufficiently Protected CredentialsThe product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
- CWE-326 - Inadequate Encryption StrengthThe software stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.