CVE-2024-2882

June 27, 2024, 7:25 p.m.

Awaiting Analysis
CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.

Products

UNKNOWN

Source

ics-cert@hq.dhs.gov

Tags

CVE-2024-2882 details

Published : June 27, 2024, 7:15 p.m.
Last Modified : June 27, 2024, 7:25 p.m.

Description

SDG Technologies PnPSCADA allows a remote attacker to attach various entities without requiring system authentication. This breach could potentially lead to unauthorized control, data manipulation, and access to sensitive information within the SCADA system.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description
CWE-862 Missing Authorization The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

References

URL Source
https://www.cisa.gov/news-events/ics-advisories/icsa-24-179-02 ics-cert@hq.dhs.gov
This website uses the NVD API, but is not approved or certified by it.