cve/2024/CVE-2024-8887.md

18 lines
869 B
Markdown
Raw Permalink Normal View History

2025-09-29 21:09:30 +02:00
### [CVE-2024-8887](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-8887)
![](https://img.shields.io/static/v1?label=Product&message=CIRCUTOR%20Q-SMT&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=1.0.4%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-1284%20Improper%20Validation%20of%20Specified%20Quantity%20in%20Input&color=brightgreen)
### Description
CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with access to the web service bypasses the authentication mechanisms on the login page, allowing the attacker to use all the functionalities implemented at web level that allow interacting with the device.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds