CVE-2024-41174: Beckhoff: Improper input neutralization vulnerability in the IPC-Diagnostics package in TwinCAT/BSD
Published Aug 27, 2024
·Updated
The IPC-Diagnostics package in TwinCAT/BSD is susceptible to improper input neutralization by a low-privileged local attacker.
Affected Software
2 affected components
Beckhoff Ipc Diagnostics Package<2.1.1.0
Beckhoff Twincat\/bsd<14.1.2.0
Event History
Aug 27, 2024
CVE Published
via MITRE·08:01 AM
Data Sourced
via MITRE·08:01 AM
DescriptionSeverityWeakness
Aug 16, 56669
Event
via NVD·07:38 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-41174?
CVE-2024-41174 has been classified as a high severity vulnerability.
2
How do I fix CVE-2024-41174?
To fix CVE-2024-41174, update the IPC-Diagnostics package to a version greater than 2.1.1.0.
3
Who is affected by CVE-2024-41174?
CVE-2024-41174 affects users of the IPC-Diagnostics package in versions prior to 2.1.1.0 and TwinCAT/BSD versions before 14.1.2.0.
4
What type of vulnerability is CVE-2024-41174?
CVE-2024-41174 is categorized as an improper input neutralization vulnerability.
5
Can a local attacker exploit CVE-2024-41174?
Yes, a low-privileged local attacker can exploit CVE-2024-41174.