216.73.217.22

CVE-2024-8887

· Published 18/09/2024 11:15 · Modified 01/10/2024 17:30

Labels: CVE-2024-8887 2024-09-18CVE-2024-8887CWE-1284[email protected]

Essential information

Published
18/09/2024 11:15
Modified
01/10/2024 17:30
Author
Creator
CVSS
8.6 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

CVSS metrics

Description

CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with access to the web service bypasses the authentication mechanisms on the login page, allowing the attacker to use all the functionalities implemented at web level that allow interacting with the device.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
circutor / q-smt firmware cpe:2.3:o:circutor:q-smt_firmware:1.0.4:*:*:*:*:*:*:*
circutor / q-smt cpe:2.3:h:circutor:q-smt:-:*:*:*:*:*:*:*

References