First published: Wed Feb 14 2024(Updated: )
CWE-287: Improper Authentication vulnerability exists that could cause unauthorized tampering of device configuration over NFC communication.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Se Rmnf22tb30 | ||
Se Rmnf22tb30 Firmware | ||
All of | ||
Se Renf22r2mmw | ||
Se Renf22r2mmw Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0568 is classified as a critical vulnerability due to the potential for unauthorized tampering of device configuration.
To mitigate CVE-2024-0568, apply the latest firmware updates provided by the manufacturer.
CVE-2024-0568 affects specific Schneider Electric firmware versions associated with the Se Rmnf22tb30 and Se Renf22r2mmw devices.
The vulnerability can lead to unauthorized changes in device configuration via NFC communication, compromising device integrity.
No, CVE-2024-0568 involves improper authentication, which means that exploitation can occur without valid credentials.