CVE-2024-45482: Privilege escalation in B&R APROL
Published Mar 25, 2025
·Updated
An Inclusion of Functionality from Untrusted Control Sphere vulnerability in the SSH server on B&R APROL <4.4-00P1 may allow an authenticated local attacker from a trusted remote server to execute malicious commands.
Affected Software
1 affected component
B&R APROL<4.4-00P1
Event History
Mar 25, 2025
CVE Published
via MITRE·04:52 AM
Data Sourced
via MITRE·04:52 AM
DescriptionWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-45482?
The severity of CVE-2024-45482 is considered high due to its potential to allow unauthorized command execution.
2
How do I fix CVE-2024-45482?
To fix CVE-2024-45482, it is recommended to upgrade the B&R APROL software to version 4.4-00P1 or higher.
3
Who is affected by CVE-2024-45482?
CVE-2024-45482 affects users of B&R APROL software versions below 4.4-00P1.
4
What type of attacker can exploit CVE-2024-45482?
An authenticated local attacker from a trusted remote server can exploit CVE-2024-45482.
5
What is the impact of CVE-2024-45482?
The impact of CVE-2024-45482 is the potential execution of malicious commands on the SSH server.