CVE-2024-45367

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Oct 3, 2024
Updated: Oct 4, 2024
CWE ID 1390

Summary

CVE-2024-45367 is a newly disclosed vulnerability affecting the web server of ONS-S8 - Spectra Aggregation Switch. This issue arises from an incomplete authentication process, allowing an attacker to bypass the password requirement and gain unauthorized access to the system. Successful exploitation of this vulnerability could lead to serious security consequences, including unauthorized system modifications or data theft. It is recommended that affected organizations apply the available patches or updates as soon as possible to mitigate this risk. The precise impact of this vulnerability may depend on the specific configuration and usage of the ONS-S8 device.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share