← volver
CVE-2024-10776

SICK InspectorP61x and SICK InspectorP62x: missing authentication

CVSS 8.2 HIGHEPSS 0.5%CWE-306
Lua apps can be deployed, removed, started, reloaded or stopped without authorization via AppManager. This allows an attacker to remove legitimate apps creating a DoS attack, read and write files or load apps that use all features of the product available to a customer.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →