CVE-2024-10498

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 17, 2025
CWE ID 119

Summary

CVE-2024-11498 is a memory buffer vulnerability identified as CWE-119, which allows unauthorized modification of configuration values. Attackers can exploit this weakness by sending specific Modbus write packets to the affected device. Successful exploitation could result in invalid data or loss of web interface functionality. This issue poses a significant risk, as incorrect configuration settings could lead to various security or functional issues. It's crucial for organizations using the affected devices to apply necessary patches or updates as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share