PT-2014-4664 · Sensys Networks · Vsn240-F+2
Publicado
2014-09-05
·
Atualizado
2025-10-13
·
CVE-2014-2378
CVSS v2.0
6.5
Média
| Vetor | AV:A/AC:H/Au:N/C:C/I:C/A:P |
Name of the Vulnerable Software and Affected Versions
Sensys Networks VSN240-F and VSN240-T sensors VDS versions prior to 2.10.1
Sensys Networks TrafficDOT versions prior to 2.10.3
Description
The issue allows remote attackers to execute arbitrary code via a Trojan horse update because the integrity of downloaded updates is not verified.
Recommendations
For Sensys Networks VSN240-F and VSN240-T sensors VDS versions prior to 2.10.1, update to version 2.10.1 or later.
For Sensys Networks TrafficDOT versions prior to 2.10.3, update to version 2.10.3 or later.
Correção
Code Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Trafficdot
Vsn240-F
Vsn240-T