Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-6176

June 20, 2024, 12:43 p.m.

Product(s) Impacted

LG SuperSign CMS

  • 4.1.3
  • before 4.3.1

Description

Allocation of Resources Without Limits or Throttling vulnerability in LG Electronics LG SuperSign CMS allows Port Scanning.This issue affects LG SuperSign CMS: from 4.1.3 before < 4.3.1.

Weaknesses

CWE-770
Allocation of Resources Without Limits or Throttling

The product allocates a reusable resource or group of resources on behalf of an actor without imposing any restrictions on the size or number of resources that can be allocated, in violation of the intended security policy for that actor.

CWE ID: 770

Date

Published: June 20, 2024, 1:15 a.m.

Last Modified: June 20, 2024, 12:43 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

product.security@lge.com

References

https://lgsecurity.lge.com/ product.security@lge.com