CVE-2024-39868

CWE-4253 documents3 sources
Severity
7.2HIGH
EPSS
0.4%
top 40.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 9

Description

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected devices do not properly validate the authentication when performing certain actions in the web interface allowing an unauthenticated attacker to access and edit VxLAN configuration information of networks for which they have no privileges.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
CVEList
CVE-2024-39868: A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V32024-07-09
GHSA
GHSA-g245-5mwg-84ch: A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V32024-07-09
CVE-2024-39868 (HIGH CVSS 7.2) | A vulnerability has been identified | cvebase.io