Improper usage of symmetric encryption in UI Desktop for Windows (Version 0.59.1.71 and earlier) could allow users with access to UI Desktop configuration files to decrypt their content.This vulnerability is fixed in Version 0.62.3 and later.
References
Configurations
History
05 Feb 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://community.ui.com/releases/Security-Advisory-Bulletin-029-029/a47c68f2-1f3a-47c3-b577-eb70599644e4 - Vendor Advisory |
01 May 2023, 20:26
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://community.ui.com/releases/Security-Advisory-Bulletin-029-029/a47c68f2-1f3a-47c3-b577-eb70599644e4 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
CPE | cpe:2.3:a:ui:desktop:*:*:*:*:*:windows:*:* | |
First Time |
Ui
Ui desktop |
|
CWE | CWE-326 |
19 Apr 2023, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-04-19 20:15
Updated : 2025-02-05 16:15
NVD link : CVE-2023-28124
Mitre link : CVE-2023-28124
JSON object : View
Products Affected
ui
- desktop
CWE
CWE-326
Inadequate Encryption Strength