CVE-2024-9787 – Contemporary Control System BASrouter BACnet BASRT-B UDP Packet denial of service
https://notcve.org/view.php?id=CVE-2024-9787
A vulnerability, which was classified as problematic, was found in Contemporary Control System BASrouter BACnet BASRT-B 2.7.2. This affects an unknown part of the component UDP Packet Handler. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. • https://vuldb.com/?id.279939 https://vuldb.com/?ctiid.279939 https://vuldb.com/?submit.414499 https://github.com/isZzzz/BASRT-B_BriefDoS_Document/blob/main/report.md • CWE-404: Improper Resource Shutdown or Release •
CVE-2024-4791 – Contemporary Control System BASrouter BACnet BASRT-B Application Protocol Data Unit denial of service
https://notcve.org/view.php?id=CVE-2024-4791
A vulnerability classified as critical was found in Contemporary Control System BASrouter BACnet BASRT-B 2.7.2. This vulnerability affects unknown code of the component Application Protocol Data Unit. The manipulation leads to denial of service. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. • https://github.com/isZzzz/BASRT-B_BACnet_Router_Document/blob/main/BASER-B_APDU.pcapng https://github.com/isZzzz/BASRT-B_BACnet_Router_Document/blob/main/BASRT-B_2_CVE_apply.pdf https://vuldb.com/?ctiid.263890 https://vuldb.com/?id.263890 https://vuldb.com/?submit.323630 • CWE-404: Improper Resource Shutdown or Release •
CVE-2024-4292 – Contemporary Controls BASrouter BACnet BASRT-B Device-Communication-Control Service denial of service
https://notcve.org/view.php?id=CVE-2024-4292
A vulnerability classified as critical has been found in Contemporary Controls BASrouter BACnet BASRT-B 2.7.2. Affected is an unknown function of the component Device-Communication-Control Service. The manipulation with the input 55ff0500370015f30104025506110afb7519035d0841e4bece257b6acfc71f leads to denial of service. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-262224. • https://github.com/isZzzz/BASRT-B_BACnet_Router_Document/blob/main/BASER-B_backdoor.pcapng https://github.com/isZzzz/BASRT-B_BACnet_Router_Document/blob/main/BASRT_CVE_apply.pdf https://vuldb.com/?ctiid.262224 https://vuldb.com/?id.262224 https://vuldb.com/?submit.320749 • CWE-404: Improper Resource Shutdown or Release •