CVE-2024-4640

Severity
8.2HIGH
EPSS
0.7%
top 27.43%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 25

Description

OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to missing bounds checking on buffer operations. An attacker could write past the boundaries of allocated buffer regions in memory, causing a program crash.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:HExploitability: 2.8 | Impact: 4.2

🔴Vulnerability Details

2
GHSA
GHSA-5cpc-fv98-27hq: OnCell G3470A-LTE Series firmware versions v12024-06-25
CVEList
OnCell G3470A-LTE Series: Authenticated Command Injection via sendTestEmail2024-06-25