CVE-2024-22044
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability has been identified in SENTRON 3KC ATC6 Expansion Module Ethernet (3KC9000-8TL75) (All versions). Affected devices expose an unused, unstable http service at port 80/tcp on the Modbus-TCP Ethernet. This could allow an attacker on the same Modbus network to create a denial of service condition that forces the device to reboot.
Se ha identificado una vulnerabilidad en SENTRON 3KC ATC6 Expansion Module Ethernet (3KC9000-8TL75) (Todas las versiones). Los dispositivos afectados exponen un servicio http inestable y no utilizado en el puerto 80/tcp en Modbus-TCP Ethernet. Esto podría permitir que un atacante en la misma red Modbus cree una condición de denegación de servicio que obligue al dispositivo a reiniciarse.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2024-01-04 CVE Reserved
- 2024-03-12 CVE Published
- 2024-03-13 EPSS Updated
- 2024-08-26 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-912: Hidden Functionality
CAPEC
References (1)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | SENTRON 3KC ATC6 Expansion Module Ethernet Search vendor "Siemens" for product "SENTRON 3KC ATC6 Expansion Module Ethernet" | 0 Search vendor "Siemens" for product "SENTRON 3KC ATC6 Expansion Module Ethernet" and version "0" | en |
Affected
|