Unauthenticated Remote Attackers Can Gain Service Level Privileges Through Incomplete Cleanup During Service Restart After DoS
CVE-2024-26005

4.8MEDIUM

Key Information:

Vendor
CVE Published:
12 March 2024

Summary

An unauthenticated remote attacker can gain service level privileges through an incomplete cleanup during service restart after a DoS. 

Affected Version(s)

CHARX SEC-3000 0 <= 1.5.0

CHARX SEC-3050 0 <= 1.5.0

CHARX SEC-3100 0 <= 1.5.0

References

CVSS V3.1

Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jack Dates
RET2 Systems
.