CVE-2024-6098
CVSS V2 None
CVSS V3 None
Description
When performing an online tag generation to devices which communicate
using the ControlLogix protocol, a machine-in-the-middle, or a device
that is not configured correctly, could deliver a response leading to
unrestricted or unregulated resource allocation. This could cause a
denial-of-service condition and crash the Kepware application. By
default, these functions are turned off, yet they remain accessible for
users who recognize and require their advantages.
Overview
- CVE ID
- CVE-2024-6098
- Assigner
- icscert
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-08-16T14:57:51.023Z
- Last Modified Date
- 2024-08-16T14:57:51.023Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-24-228-11 | |
https://www.ptc.com/en/support/article/CS423892 |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-6098 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-6098 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-08-17 13:04:44 | Added to TrackCVE |