PT-2024-20559 · Hima · F-Com 01+19

Dr. Martin Floeck

+1

·

Published

2024-02-13

·

Updated

2024-10-18

·

CVE-2024-24782

CVSS v3.1

4.3

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description An unauthenticated attacker can send a ping request from one network to another through an error in the origin verification, even though the ports are separated by VLAN. This issue allows unauthorized access between networks that are supposed to be isolated.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Origin Validation Error

Weakness Enumeration

Related Identifiers

CVE-2024-24782

Affected Products

F-Com 01
F-Com 01 Coated
F-Cpu 01
F-Cpu 01 Coated
F30 03X Yy
F35 03X Yy
F60 Cpu 03X Yy
X-Com 01 E Yy
X-Cpu 01
X-Cpu 31
F-Com 01 Firmware
F-Cpu 01 Firmware
F30 03X Yy (Com) Firmware
F30 03X Yy (Cpu) Firmware
F35 03X Yy (Com) Firmware
F35 03X Yy (Cpu) Firmware
F60 Cpu 03X Yy (Cpu) Firmware
X-Com 01 E Yy Firmware
X-Cpu 31 Firmware
X-Sb 01 Firmware