CVE-2023-40464

Publication date

2023-12-04 22:59:33

Family

SWI

State

PUBLISHED

Description

Several versions of ALEOS, including ALEOS 4.16.0, use a hardcoded SSL certificate and private key. An attacker with access to these items could potentially perform a man in the middle attack between the ACEManager client and ACEManager server.