CVE-2024-10771

CVSS V2 None CVSS V3 None
Description
Due to missing input validation during one step of the firmware update process, the product is vulnerable to remote code execution. With network access and the user level ”Service”, an attacker can execute arbitrary system commands in the root user’s contexts.
Overview
  • CVE ID
  • CVE-2024-10771
  • Assigner
  • SICK AG
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-12-06T12:24:40.610Z
  • Last Modified Date
  • 2024-12-06T12:24:40.610Z
History
Created Old Value New Value Data Type Notes
2024-12-07 13:13:55 Added to TrackCVE