CVE-2024-32758: Weak Encryption
Published Aug 1, 2024
·Updated
Under certain circumstances the communication between exacqVision Client and exacqVision Server will use insufficient key length and exchange
Affected Software
2 affected components
Johnsoncontrols Exacqvision Client<24.06
Johnsoncontrols Exacqvision Server<24.06
Event History
Aug 1, 2024
CVE Published
via NVD·10:15 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-32758?
CVE-2024-32758 is considered to be a medium severity vulnerability due to the use of insufficient key length in communication.
2
How do I fix CVE-2024-32758?
To fix CVE-2024-32758, ensure your exacqVision Client and Server software versions are updated to 24.06 or later.
3
What systems are affected by CVE-2024-32758?
CVE-2024-32758 affects exacqVision Client and exacqVision Server versions prior to 24.06.
4
What are the potential risks of CVE-2024-32758?
The risks associated with CVE-2024-32758 include potential unauthorized access due to weak encryption during communication.
5
Is there a patch available for CVE-2024-32758?
Yes, a patch is available by updating to the latest software versions for exacqVision Client and Server.