CVE-2025-24499
CVSS 3.1 Score 7.2 of 10 (high)
Details
Published Feb 11, 2025
CWE ID 20
Summary
CVE-2025-24499 is a vulnerability affecting multiple SCALANCE WAB, WAM, WAM766, WUB, and WUM series devices, including those with model numbers WAB762-1, WAM763-1, WAM766-1, WUB762-1, and WUM763-1. These devices, all versions below V3.0.0, do not properly validate user input while loading configuration files. This flaw grants an authenticated remote attacker the ability to execute arbitrary shell commands on the device, potentially leading to significant security risks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share