First published: Mon Dec 09 2024(Updated: )
An issue was discovered in Digi ConnectPort LTS before 1.4.12. A Privilege Escalation vulnerability exists in the file upload feature. It allows an attacker on the local area network (with specific permissions) to upload and execute malicious files, potentially leading to unauthorized system access.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Digi ConnectPort LTS 8/16/32 | <1.4.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-50627 is classified as a Privilege Escalation vulnerability affecting Digi ConnectPort LTS devices.
To fix CVE-2024-50627, upgrade Digi ConnectPort LTS to version 1.4.12 or newer.
Digi ConnectPort LTS users with versions prior to 1.4.12 are affected by CVE-2024-50627.
CVE-2024-50627 enables an attacker to upload and execute malicious files, leading to unauthorized system access.
If unable to update, restrict local network access to reduce the risk associated with CVE-2024-50627.