CVE-2024-22388
Certain configuration available in the communication channel for encoders could expose sensitive data when reader configuration cards are programmed. This data could include credential and device administration keys.
Published:Feb 6, 2024
Last Modified:May 7, 2025
EPS:Feb 6, 2024
EPSS Score:0.00041
CVSS Score:5.9
Affected Products
Vendor
Product
Action
Vendor
Hidglobal
Product
Iclass Se Cp1000 Encoder
Hidglobal
Iclass Se Cp1000 Encoder
Vendor
Hidglobal
Product
Iclass Se Cp1000 Encoder Firmware
Hidglobal
Iclass Se Cp1000 Encoder Firmware
Vendor
Hidglobal
Product
Iclass Se Processors
Hidglobal
Iclass Se Processors
Vendor
Hidglobal
Product
Iclass Se Processors Firmware
Hidglobal
Iclass Se Processors Firmware
Vendor
Hidglobal
Product
Iclass Se Reader Modules
Hidglobal
Iclass Se Reader Modules
Vendor
Hidglobal
Product
Iclass Se Reader Modules Firmware
Hidglobal
Iclass Se Reader Modules Firmware
Vendor
Hidglobal
Product
Iclass Se Readers
Hidglobal
Iclass Se Readers
Vendor
Hidglobal
Product
Iclass Se Readers Firmware
Hidglobal
Iclass Se Readers Firmware
Vendor
Hidglobal
Product
Omnikey 5023
Hidglobal
Omnikey 5023
Vendor
Hidglobal
Product
Omnikey 5023 Firmware
Hidglobal
Omnikey 5023 Firmware
Vendor
Hidglobal
Product
Omnikey 5027
Hidglobal
Omnikey 5027
Vendor
Hidglobal
Product
Omnikey 5027 Firmware
Hidglobal
Omnikey 5027 Firmware
Vendor
Hidglobal
Product
Omnikey 5127ck
Hidglobal
Omnikey 5127ck
Vendor
Hidglobal
Product
Omnikey 5127ck Firmware
Hidglobal
Omnikey 5127ck Firmware
Vendor
Hidglobal
Product
Omnikey 5427ck
Hidglobal
Omnikey 5427ck
Vendor
Hidglobal
Product
Omnikey 5427ck Firmware
Hidglobal
Omnikey 5427ck Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
