CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2024-38883

Critical · CVSS 9.1

Caterease — Drop Encryption Level Attack / Algorithm Downgrade (CWE-757)

CVSS
9.1
nvd
EPSS
0.41%
33th pct
KEV
No
Class
other
CWE-757

Description

An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a remote attacker to perform a Drop Encryption Level attack due to the selection of a less-secure algorithm during negotiation.

Search profile — drives PoC discovery

Symbols encryption negotiationalgorithm selectionless-secure algorithmTLS downgradecipher negotiation
Keywords CVE-2024-38883CatereaseDrop Encryption Levelalgorithm downgradeencryption negotiationHorizon Business ServicesCWE-757cipher downgradeCaterease 16.0.1.1663Caterease 24.0.1.2405
Versions: 16.0.1.1663 through 24.0.1.2405

References

Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-06T00:30:39.000Z