CVE-2024-31486

Publication date

2024-05-14 10:02:26

Family

siemens

State

PUBLISHED

Description

A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.