cbcvebase.
CVE-2024-6421
published 2024-07-10

CVE-2024-6421: An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service.

PriorityP348high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
0.51%
39.6th percentile
An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service.

Affected

8 ranges
VendorProductVersion rangeFixed in
pepperl+fuchsoit1500-f113-b12-cb<= V2.11.0
pepperl+fuchsoit200-f113-b12-cb<= V2.11.0
pepperl+fuchsoit500-f113-b12-cb<= V2.11.0
pepperl+fuchsoit700-f113-b12-cb<= V2.11.0
pepperl-fuchsoit1500-f113-b12-cb_firmware<= 2.11.0
pepperl-fuchsoit200-f113-b12-cb_firmware<= 2.11.0
pepperl-fuchsoit500-f113-b12-cb_firmware<= 2.11.0
pepperl-fuchsoit700-f113-b12-cb_firmware<= 2.11.0
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.