← back
CVE-2024-33896highCWE-78

CVE-2024-33896

41Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendcvss 7.2epss 4.0%
from disclosure to weapon251 days
Published on NVDAug 2
1st PoC+251d
exploitation probability
4.0%top 10% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are vulnerable to code injection due to improper parameter blacklisting. This is fixed in version 21.2s10 and 22.1s3.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.