Low Privileged Remote Attackers Can Modify Boot Mode Configuration and Cause Firmware Upgrade Issues or DoS Attacks
CVE-2024-41967
8.1HIGH
What is CVE-2024-41967?
The vulnerability allows a remote attacker with low privileges to manipulate the boot mode configuration of devices manufactured by XYZ Corp. This flaw can lead to unauthorized modifications to the firmware upgrade process, resulting in potential operational disruptions. Attackers could exploit this vulnerability to execute denial-of-service attacks, affecting the availability and reliability of affected devices.
Affected Version(s)
CC100 0751-9x01 0.0.0 <= 4.5.10 (FW27)
CC100 0751/9x01 0.0.0 <= 04.03.03 (72)
CC100 0751/9x01 0.0.0 <= 04.04.03 (70)