CVE-2024-50560
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Nov 12, 2024
Updated: Nov 13, 2024
CWE ID 20
Summary
CVE-2024-50560 is a vulnerability affecting multiple SCALANCE and RUGGEDCOM devices, including RM1224 LTE models, M804PB, M812-1, M816-1, M826-2, M874-2 and M874-3 series, M876-3 and M876-4 models, MUM853-1 and MUM856-1 series, and S615 LAN-Routers. These devices truncate usernames longer than 15 characters when accessed via SSH or Telnet, allowing potential attackers to bypass authentication and compromise system integrity. All versions prior to V8.2 are impacted.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Siemens AG