从这个网页截图中,可以获取到以下关于漏洞的关键信息: 1. 漏洞编号: - CVE-2024-39341 - CVE-2024-39342 2. 漏洞名称: - Instant Financial Issuance (On Premise) Software (formerly CardWizard) - Sensitive Information Disclosure (CVE-2024-39341) - Hardcoded Cryptographic Keys (CVE-2024-39342) 3. 漏洞描述: - Instant Financial Issuance (On Premise) Software (formerly known as Cardwizard) leaves behind a configuration file (i.e. WebAPI.cfg.xml) that contains sensitive information. - Entrust Instant Financial Issuance (On Premise) Software (formerly known as Cardwizard) uses a DLL library (i.e. DCG.Security.dll) with a custom AES encryption key. 4. 受影响的版本: - 6.10.0, 6.9.0, 6.9.1, 6.9.2, 6.8.x and older 5. 受影响的软件: - Entrust Instant Financial Issuance (On Premise) Software (formerly known as Cardwizard) 6. 受影响的平台: - Windows Server 2019 Standard Build 17763 7. 修复建议: - Entrust Security Bulletin E24-003 8. 作者: - Victor A. Morales, Omar A. Crespo, GM Sectec Inc. 9. 创建日期: - 08/20/2024 这些信息可以帮助了解漏洞的详细情况、受影响的范围以及如何修复。