CVE detail
CVE-2024-31415 — CVE-2024-31415
Published 2024-09-13 · Modified 2026-06-17 · Vendor eaton · Product foreseer_electrical_power_monitoring_system · Source nvd
MEDIUM
severity
CVSS-derived band
0.0012
EPSS probability
exploitation probability, 30d
2.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The Eaton Foreseer software provides the feasibility for the user to configure external servers for multiple purposes such as network management, user management, etc. The software uses encryption to store these configurations securely on the host machine. However, the keys used for this encryption were insecurely stored, which could be abused to possibly change or remove the server configuration.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References