CVE-2024-5264

Network Transfer with AES KHT in Thales Luna EFT 2.1 and above allows a user with administrative console access to access backups taken via offline analysis
Configurations

Configuration 1 (hide)

cpe:2.3:a:thalesgroup:luna_eft:2.1:*:*:*:*:*:*:*

History

21 Jun 2024, 17:18

Type Values Removed Values Added
First Time Thalesgroup
Thalesgroup luna Eft
CPE cpe:2.3:a:thalesgroup:luna_eft:2.1:*:*:*:*:*:*:*
References () https://supportportal.thalesgroup.com/csm?id=kb_article_view&sys_kb_id=50da3cd9c302c218204e2a6ce00131b9&sysparm_article=KB0028531 - () https://supportportal.thalesgroup.com/csm?id=kb_article_view&sys_kb_id=50da3cd9c302c218204e2a6ce00131b9&sysparm_article=KB0028531 - Permissions Required
CWE CWE-338
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

23 May 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-23 09:15

Updated : 2024-06-21 17:18


NVD link : CVE-2024-5264

Mitre link : CVE-2024-5264


JSON object : View

Products Affected

thalesgroup

  • luna_eft
CWE
CWE-338

Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)