#VU97915 Insertion of Sensitive Information Into Sent Data in ATAK Plugin - CVE-2024-43814
Published: October 1, 2024
ATAK Plugin
goTenna
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to the affected plugin by default enables frequent unencrypted Position, Location and Information (PLI) transmission. A remote attacker on the local network can gain unauthorized access to sensitive information on the system.