8.8
CVE-2024-7699
- EPSS 0.63%
- Veröffentlicht 10.09.2024 09:15:07
- Zuletzt bearbeitet 27.09.2024 18:59:31
- Quelle info@cert.vde.com
- Teams Watchlist Login
- Unerledigt Login
An low privileged remote attacker can execute OS commands with root privileges due to improper neutralization of special elements in user data.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Phoenixcontact ≫ Tc Mguard Rs4000 4g Vzw Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Tc Mguard Rs4000 4g Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Tc Mguard Rs4000 4g Att Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Tc Mguard Rs4000 3g Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Tc Mguard Rs2000 4g Vzw Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Tc Mguard Rs2000 4g Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Tc Mguard Rs2000 4g Att Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Tc Mguard Rs2000 3g Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Smart2 Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Smart2 Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs4004 Tx/dtx Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs4004 Tx/dtx Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs4000 Tx/tx Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs4000 Tx/tx-p Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs4000 Tx/tx-m Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs4000 Tx/tx Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs2005 Tx Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs2000 Tx/tx Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Rs2000 Tx/tx-b Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Pcie4000 Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Pcie4000 Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Pci4000 Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Pci4000 Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Gt/gt Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Gt/gt Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Delta Tx/tx Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Delta Tx/tx Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Core Tx Vpn Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Core Tx Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard Centerport Vpn-1000 Firmware Version < 8.9.3
Phoenixcontact ≫ Fl Mguard 4305 Firmware Version < 10.4.1
Phoenixcontact ≫ Fl Mguard 4302 Firmware Version < 10.4.1
Phoenixcontact ≫ Fl Mguard 4102 Pcie Firmware Version < 10.4.1
Phoenixcontact ≫ Fl Mguard 4102 Pci Firmware Version < 10.4.1
Phoenixcontact ≫ Fl Mguard 2105 Firmware Version < 10.4.1
Phoenixcontact ≫ Fl Mguard 2102 Firmware Version < 10.4.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.63% | 0.694 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
info@cert.vde.com | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.