4.3
CVE-2024-24782
- EPSS 0.03%
- Veröffentlicht 13.02.2024 14:15:47
- Zuletzt bearbeitet 21.11.2024 08:59:41
- Quelle info@cert.vde.com
- CVE-Watchlists
- Unerledigt
An unauthenticated attacker can send a ping request from one network to another through an error in the origin verification even though the ports are separated by VLAN.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hima ≫ F30 03x Yy (com) Firmware Version <= 24.14
Hima ≫ F30 03x Yy (cpu) Firmware Version <= 18.6
Hima ≫ F35 03x Yy (com) Firmware Version <= 24.14
Hima ≫ F35 03x Yy (cpu) Firmware Version <= 18.6
Hima ≫ F60 Cpu 03x Yy (com) Firmware Version <= 24.14
Hima ≫ F60 Cpu 03x Yy (cpu) Firmware Version <= 18.6
Hima ≫ F-com 01 Firmware Version <= 14.12
Hima ≫ F-cpu 01 Firmware Version <= 14.16
Hima ≫ X-com 01 E Yy Firmware Version <= 15.14
Hima ≫ X-com 01 Yy Firmware Version <= 14.12
Hima ≫ X-cpu 01 Firmware Version <= 14.16
Hima ≫ X-cpu 31 Firmware Version <= 14.16
Hima ≫ X-sb 01 Firmware Version <= 7.54
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.03% | 0.089 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| info@cert.vde.com | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
CWE-346 Origin Validation Error
The product does not properly verify that the source of data or communication is valid.