Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-8887

Опубликовано: 18 сент. 2024
Источник: nvd
CVSS3: 10
CVSS3: 8.6
EPSS Низкий

Описание

CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with access to the web service bypasses the authentication mechanisms on the login page, allowing the attacker to use all the functionalities implemented at web level that allow interacting with the device.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:circutor:q-smt_firmware:1.0.4:*:*:*:*:*:*:*
cpe:2.3:h:circutor:q-smt:-:*:*:*:*:*:*:*

EPSS

Процентиль: 22%
0.00074
Низкий

10 Critical

CVSS3

8.6 High

CVSS3

Дефекты

CWE-1284
CWE-1284

Связанные уязвимости

CVSS3: 10
github
больше 1 года назад

CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with access to the web service bypasses the authentication mechanisms on the login page, allowing the attacker to use all the functionalities implemented at web level that allow interacting with the device.

EPSS

Процентиль: 22%
0.00074
Низкий

10 Critical

CVSS3

8.6 High

CVSS3

Дефекты

CWE-1284
CWE-1284