CVE-2024-39287

EUVD-2024-37886
Dorsett Controls Central Server update server has potential information 
leaks with an unprotected file that contains passwords and API keys.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
icscertCNA
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 67%
Affected Products (NVD)
VendorProductVersion
dorsettcontrolsinfoscan
1.32
dorsettcontrolsinfoscan
1.33
dorsettcontrolsinfoscan
1.35
𝑥
= Vulnerable software versions