2024-08-26 14:03:14 +00:00

92 lines
2.7 KiB
JSON

{
"id": "CVE-2024-24051",
"sourceIdentifier": "cve@mitre.org",
"published": "2024-06-12T18:15:10.920",
"lastModified": "2024-08-26T12:43:44.580",
"vulnStatus": "Analyzed",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Improper input validation of printing files in Monoprice Select Mini V2 V37.115.32 allows attackers to instruct the device's movable parts to destinations that exceed the devices' maximum coordinates via the printing of a malicious .gcode file."
},
{
"lang": "es",
"value": "La validaci\u00f3n de entrada incorrecta de los archivos de impresi\u00f3n en Monoprice Select Mini V2 V37.115.32 permite a los atacantes indicar a las partes m\u00f3viles del dispositivo destinos que exceden las coordenadas m\u00e1ximas de los dispositivos mediante la impresi\u00f3n de un archivo .gcode malicioso."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "NONE",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "HIGH",
"availabilityImpact": "NONE",
"baseScore": 5.5,
"baseSeverity": "MEDIUM"
},
"exploitabilityScore": 1.8,
"impactScore": 3.6
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"configurations": [
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:monoprice:select_min_v2_firmware:37.115.32:*:*:*:*:*:*:*",
"matchCriteriaId": "174297BB-58CA-4E5C-B121-D755E395D227"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:monoprice:select_min_v2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "C3179B43-1DE7-41E9-B4FD-3D6E6FA4F0DB"
}
]
}
]
}
],
"references": [
{
"url": "https://github.com/tkruppert/Reported_Vulnerabilities/blob/main/CVE-2024-24051.md",
"source": "cve@mitre.org",
"tags": [
"Broken Link"
]
}
]
}