CVE-2024-4225

April 30, 2024, 1:11 p.m.

Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.

Products

NetGuardian DIN Remote Telemetry Unit (RTU)

NetGuardian DIN Remote Telemetry Unit (RTU) by DPS Telecom

Source

cve_disclosure@tech.gov.sg

Tags

CVE-2024-4225 details

Published : April 30, 2024, 7:15 a.m.
Last Modified : April 30, 2024, 1:11 p.m.

Description

Multiple security vulnerabilities has been discovered in web interface of NetGuardian DIN Remote Telemetry Unit (RTU), by DPS Telecom. Attackers can exploit those security vulnerabilities to perform critical actions such as escalate user's privilege, steal user's credential, Cross Site Scripting (XSS) and Cross-Site Request Forgery (CSRF).

CVSS Score

1 2 3 4 5 6 7.6 8 9 10

Weakness

Weakness Name Description

CVSS Data

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Privileges Required

LOW

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

LOW

Base Score

7.6

Exploitability Score

Impact Score

Base Severity

HIGH

This website uses the NVD API, but is not approved or certified by it.