CVE-2024-21785: Critical severity automationdirect p3-550e firmware vulnerability
A leftover debug code vulnerability exists in the Telnet Diagnostic Interface functionality of AutomationDirect P3-550E 1.2.10.9. A specially crafted series of network requests can lead to unauthorized access. An attacker can send a sequence of requests to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-21785?
CVE-2024-21785 is classified as a critical vulnerability due to the potential for unauthorized access via the Telnet Diagnostic Interface.
How do I fix CVE-2024-21785?
To fix CVE-2024-21785, update the AutomationDirect P3-550E to a patched version that addresses this debug code vulnerability.
What systems are affected by CVE-2024-21785?
CVE-2024-21785 affects AutomationDirect P3-550E versions up to 1.2.10.9 that utilize the Telnet Diagnostic Interface.
What can an attacker do exploiting CVE-2024-21785?
An attacker exploiting CVE-2024-21785 can send specially crafted network requests to gain unauthorized access to the system.
Is there a known workaround for CVE-2024-21785?
Currently, there are no documented workarounds for CVE-2024-21785 apart from applying the recommended software update.