CVE-2024-20344

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 29, 2024
CWE ID 400

Summary

CVE-2024-20344 is a vulnerability in system resource management in Cisco UCS 6400 and 6500 Series Fabric Interconnects that are in Intersight Managed Mode (IMM). It could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the Device Console UI of an affected device. The vulnerability is due to insufficient rate-limiting of TCP connections, which allows an attacker to send a high number of TCP packets and crash the Device Console UI process. To remediate this vulnerability, a manual reload of the fabric interconnect is required. The potential danger posed by this vulnerability is the disruption of the affected device's functionality due to the DoS condition.

Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future

Note: This is just a basic overview providing quick insights into CVE-2024-20344 information. Gain full access to comprehensive CVE data, third party vulnerabilities, compromised credentials and more with Recorded Future
  • Gain complete coverage of your cyber, third party, and physical attack surface
  • Proactively mitigate threats before they turn into costly attacks
  • Make fast, effective, data-driven decisions