CVE-2024-8603

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 15, 2025
CWE ID 327

Summary

CVE-2024-8603 represents a significant risk for organizations using B&R Automation Runtime versions below 6.1 and mapp View versions below 6.1. This vulnerability is rooted in the SSL/TLS component, which contains a "Use of a Broken or Risky Cryptographic Algorithm." Unauthenticated attackers can exploit this issue by masquerading as services on susceptible devices, potentially leading to unauthorized access and data breaches. The consequences could include serious disruptions to industrial control systems and other critical infrastructure. It is essential for affected organizations to update their software as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share