THREATINT

We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Zendesk (Helpdesk and Chat)

Ok

PUBLISHED

CVE-2024-2012

Reserved:2024-02-29
Published:2024-06-11
Updated:2024-06-11

Description

vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway that if exploited an attacker could use to allow unintended commands or code to be executed on the UNEM server allowing sensitive data to be read or modified or could cause other unintended behavior



CRITICAL: 9.1CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Problem types

CWE-288 Authentication Bypass Using an Alternate Path or Channel

Product status

Default status
unaffected

FOXMAN-UN R16B PC2
affected

FOXMAN-UN R16B PC3
unaffected

FOXMAN-UN R15B PC4
affected

FOXMAN-UN R15B PC5
unaffected

FOXMAN-UN R16A
affected

FOXMAN-UN R15A
affected

Default status
unaffected

UNEM R16B PC2
affected

UNEM R16B PC3
unaffected

UNEM R15B PC4
affected

UNEM R15B PC5
affected

UNEM R15A
affected

UNEM R16A
affected

References

https://publisher.hitachienergy.com/preview?DocumentId=8DBD000201&languageCode=en&Preview=true

cve.org CVE-2024-2012

nvd.nist.gov CVE-2024-2012

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-2012