← volver
CVE-2024-45824criticalCWE-77

FactoryTalk® View Site Edition Remote Code Execution Vulnerability via Lack of Input Validation

28Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 9.2epss 1.3%
probabilidad de explotación
1.3%top 31% de las CVE
explotación observada
noninguna fuente lo reporta
CVE-2024-45824 IMPACT A remote code vulnerability exists in the affected products. The vulnerability occurs when chained with Path Traversal, Command Injection, and XSS Vulnerabilities and allows for full unauthenticated remote code execution. The link in the mitigations section below contains patches to fix this issue.
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N