Device Vulnerable to Buffer Overflow Attack
CVE-2024-37040
8.1HIGH
What is CVE-2024-37040?
A buffer overflow vulnerability exists in Schneider Electric's web-enabled devices due to improper validation of input size when processing HTTP requests. This flaw allows an authenticated user with access to the web interface to send a specially crafted HTTP request that could lead to a device crash or other unexpected behavior. Without proper safeguards against oversized input, the affected devices are susceptible to faults that compromise their functionality and stability.