Low Privilege Attacker Can Conduct Configuration Changes Leading to Denial of Service
CVE-2024-43391
What is CVE-2024-43391?
A vulnerability exists in the firewall services of Vendor X products that enables low privileged remote attackers to alter critical configurations. This can include changes to packet filtering, forwarding, network access controls, and network address translation (NAT). By manipulating the FW_PORTFORWARDING.SRC_IP environment variable, attackers can disrupt service operations, leading to a denial of service (DoS) condition. This presents significant risks for network integrity and availability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FL MGUARD 2102 0 < 10.4.1
FL MGUARD 2105 0 < 10.4.1
FL MGUARD 4102 PCI 0 < 10.4.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
