CVE-2024-5801: IP Forwarding enabled in B&R Automation Runtime
Enabled IP Forwarding feature in B&R Automation Runtime versions before 6.0.2 may allow remote attack-ers to compromise network security by routing IP-based packets through the host, potentially by-passing firewall, router, or NAC filtering.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5801?
CVE-2024-5801 is considered a high severity vulnerability due to its potential to compromise network security.
How do I fix CVE-2024-5801?
To mitigate CVE-2024-5801, upgrade B&R Automation Runtime to version 6.0.2 or later, which disables the vulnerable IP Forwarding feature.
What systems are affected by CVE-2024-5801?
CVE-2024-5801 affects B&R Automation Runtime versions earlier than 6.0.2.
What are the potential risks of CVE-2024-5801?
Exploitation of CVE-2024-5801 could allow attackers to route IP-based packets, potentially bypassing security controls like firewalls and network access control.
Is there a workaround for CVE-2024-5801 while waiting for a patch?
Currently, the recommended action is to disable the IP Forwarding feature in B&R Automation Runtime until an upgrade can be applied.