cbcvebase.
CVE-2024-37036
published 2024-06-12

CVE-2024-37036: CWE-787: Out-of-bounds Write vulnerability exists that could result in an authentication bypass when sending a malformed POST request and particular…

PriorityP260critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.53%
41.2th percentile
CWE-787: Out-of-bounds Write vulnerability exists that could result in an authentication bypass when sending a malformed POST request and particular configuration parameters are set.

Affected

7 ranges
VendorProductVersion rangeFixed in
schneider-electricsage_rtu_firmware<= c3414-500-s02k5_p8
schneider_electricsage_1410
schneider_electricsage_1430
schneider_electricsage_1450
schneider_electricsage_2400
schneider_electricsage_3030_magnum
schneider_electricsage_4400
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.