CVE-2024-52285

A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.8), SiPass integrated ACC-AP (All versions < V6.4.8). Affected devices expose several MQTT URLs without authentication. This could allow an unauthenticated remote attacker to access sensitive data.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se ha identificado una vulnerabilidad en SiPass integrated AC5102 (ACC-G2) (Todas las versiones &lt; V6.4.8), SiPass integrated ACC-AP (Todas las versiones &lt; V6.4.8). Los dispositivos afectados exponen varias URL MQTT sin autenticación. Esto podría permitir que un atacante remoto no autenticado acceda a datos confidenciales.

11 Mar 2025, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-11 10:15

Updated : 2026-04-15 00:35


NVD link : CVE-2024-52285

Mitre link : CVE-2024-52285

CVE.ORG link : CVE-2024-52285


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function