7.5

CVE-2024-24781

An unauthenticated remote attacker can use an uncontrolled resource consumption vulnerability to DoS the affected devices through excessive traffic on a single ethernet port. 
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
HimaF30 03x Yy (com) Firmware Version <= 24.14
   HimaF30 03x Yy (com) Version-
HimaF30 03x Yy (cpu) Firmware Version <= 18.6
   HimaF30 03x (cpu) Yy Version-
HimaF35 03x Yy (com) Firmware Version <= 24.14
   HimaF35 03x Yy (com) Version-
HimaF35 03x Yy (cpu) Firmware Version <= 18.6
   HimaF35 03x Yy (cpu) Version-
HimaF60 Cpu 03x Yy (com) Firmware Version <= 24.14
   HimaF60 Cpu 03x Yy (com) Version-
HimaF60 Cpu 03x Yy (cpu) Firmware Version <= 18.6
   HimaF60 Cpu 03x Yy (cpu) Version-
HimaF-com 01 Firmware Version <= 14.12
   HimaF-com 01 Version-
HimaF-cpu 01 Firmware Version <= 14.16
   HimaF-cpu 01 Version-
HimaX-com 01 E Yy Firmware Version <= 15.14
   HimaX-com 01 E Yy Version-
HimaX-com 01 Yy Firmware Version <= 14.12
   HimaX-com 01 Yy Version-
HimaX-cpu 01 Firmware Version <= 14.16
   HimaX-cpu 01 Version-
HimaX-cpu 31 Firmware Version <= 14.16
   HimaX-cpu 31 Version-
HimaX-sb 01 Firmware Version <= 7.54
   HimaX-sb 01 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.48% 0.64
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
info@cert.vde.com 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-400 Uncontrolled Resource Consumption

The product does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.