CVE-2024-48849: Critical severity flxeon vulnerability
Missing Origin Validation in WebSockets vulnerability in FLXEON. Session management was not sufficient to prevent unauthorized HTTPS requests. This issue affects FLXEON: through <= 9.3.4.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-48849?
The severity of CVE-2024-48849 has not been explicitly stated, but it involves a missing origin validation which can lead to unauthorized HTTPS requests.
How do I fix CVE-2024-48849?
To fix CVE-2024-48849, ensure that you update FLXEON to a version greater than 9.3.4 where the vulnerability has been addressed.
What systems are affected by CVE-2024-48849?
CVE-2024-48849 affects FLXEON versions up to and including 9.3.4.
What is the nature of the vulnerability in CVE-2024-48849?
CVE-2024-48849 is characterized by missing origin validation in WebSockets, leading to potential session management issues.
Can CVE-2024-48849 lead to unauthorized access?
Yes, CVE-2024-48849 can lead to unauthorized access due to insufficient session management allowing unauthorized HTTPS requests.