Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-28124


Improper usage of symmetric encryption in UI Desktop for Windows (Version 0.59.1.71 and earlier) could allow users with access to UI Desktop configuration files to decrypt their content.This vulnerability is fixed in Version 0.62.3 and later.


Published

2023-04-19T20:15:12.247

Last Modified

2025-02-05T16:15:36.730

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-326
  • Type: Primary
    CWE-326
  • Type: Secondary
    CWE-326

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ui desktop < 0.62.3.0 Yes

References