CVE-2023-40464
Several versions of
ALEOS, including ALEOS 4.16.0, use a hardcoded
SSL certificate and
private key. An attacker with
Several versions of ALEOS, including ALEOS 4.16.0, use a hardcoded SSL certificate and private key. An attacker with access to these items could potentially perform a man in the middle attack between the ACEManager client and ACEManager server.
HIGH · CVSS 8.1
EPSS 8e-05
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0