CVE-2024-4639: OnCell G3470A-LTE Series: Authenticated Command Injection via webDelIPSec
OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to a lack of neutralized inputs in IPSec configuration. An attacker could modify the intended commands sent to target functions, which could cause malicious users to execute unauthorized commands.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Moxa OnCell G3470A-LTE Series firmwareto a version that resolves this vulnerability.Fixed in v1.7.8Patch security patch - Configuration
Update IPSec configuration handling by applying the provided security patch for OnCell G3470A-LTE Series; firmware versions v1.7.7 and prior are vulnerable due to a lack of neutralized inputs in IPSec configuration.
IPSec configuration neutralized inputs = ensure neutralized inputs are present (fix for vulnerable firmware)
Event History
Frequently Asked Questions
What is the severity of CVE-2024-4639?
CVE-2024-4639 has not been assigned a specific severity score, but it could potentially allow unauthorized execution of commands.
How do I fix CVE-2024-4639?
To mitigate CVE-2024-4639, it is recommended to upgrade the OnCell G3470A-LTE Series firmware to a version later than v1.7.7.
What versions of Moxa OnCell G3470A-LTE are affected by CVE-2024-4639?
Moxa OnCell G3470A-LTE firmware versions v1.7.7 and prior are affected by CVE-2024-4639.
What type of vulnerability is CVE-2024-4639?
CVE-2024-4639 is a command injection vulnerability related to the IPSec configuration.
Can CVE-2024-4639 be exploited remotely?
Yes, an attacker can exploit CVE-2024-4639 remotely due to the nature of the vulnerability.