CVE-2024-45481: Improper authentication in SSH of B&R APROL
Published Mar 25, 2025
·Updated
An Incomplete Filtering of Special Elements vulnerability in scripts using the SSH server on B&R APROL <4.4-00P5 may allow an authenticated local attacker to authenticate as another legitimate user.
Affected Software
1 affected component
B&R APROL<4.4-00P5
Event History
Mar 25, 2025
CVE Published
via MITRE·04:52 AM
Data Sourced
via MITRE·04:52 AM
DescriptionWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-45481?
CVE-2024-45481 is classified as a medium severity vulnerability.
2
How do I fix CVE-2024-45481?
To mitigate CVE-2024-45481, update B&R APROL to version 4.4-00P5 or later.
3
Who is affected by CVE-2024-45481?
CVE-2024-45481 affects users of B&R APROL versions prior to 4.4-00P5.
4
Can CVE-2024-45481 allow unauthorized access?
Yes, CVE-2024-45481 can allow an authenticated local attacker to authenticate as another legitimate user.
5
What type of vulnerability is CVE-2024-45481?
CVE-2024-45481 is an Incomplete Filtering of Special Elements vulnerability.