CVE-2024-20069
CVE-2024-20069 is a vulnerability in modem software that could expose sensitive information. A missing Diffie-Hellman (DH) downgrade check during VoWiFi IKE can cause the selection of a less secure algorithm. SOCRadar's Vulnerability Risk Score (SVRS) for CVE-2024-20069 is 34, indicating a moderate risk, despite the CVSS score being 0. This discrepancy highlights the importance of considering real-world exploitability and threat landscape data. Although rated as moderate, potential remote information disclosure without user interaction poses a significant concern for security. The vulnerability stems from CWE-757 (Selection of Less-Secure Algorithm). Immediate patching is recommended, especially given the potential for exploitation and the availability of a patch (MOLY01286330).
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.