Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
goTenna Pro ATAK Plugin Cleartext Transmission of Sensitive Information
Vulnerability Description
The goTenna Pro ATAK Plugin does not encrypt callsigns in messages. It is advised to not use sensitive information in callsigns when using this and previous versions of the plugin. Update to current plugin version which uses AES-256 encryption for callsigns in encrypted operation
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
敏感数据的明文传输
Vulnerability Title
goTenna Pro 安全漏洞
Vulnerability Description
goTenna Pro是goTenna公司的一系列可为离网通信和态势感知创建网络的设备。 goTenna Pro 1.9.12及之前版本存在安全漏洞,该漏洞源于用户呼号未进行加密。这些呼号泄露了用户的信息,并且可能会被用于其他漏洞攻击。
CVSS Information
N/A
Vulnerability Type
N/A