Vulnerability Details CVE-2024-23784
Improper access control vulnerability exists in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier, which may allow a network-adjacent unauthenticated attacker to obtain a username and its hashed password displayed on the management page of the affected product.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.6%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2024-23784
-
cpe:2.3:h:sharp:jh-rv11:-
-
cpe:2.3:h:sharp:jh-rvb1:-
-
cpe:2.3:o:sharp:jh-rv11_firmware:-
-
cpe:2.3:o:sharp:jh-rv11_firmware:b0.1.9.1
-
cpe:2.3:o:sharp:jh-rvb1_firmware:-
-
cpe:2.3:o:sharp:jh-rvb1_firmware:b0.1.9.1