CVE-2024-5849: Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows reflected XSS
Published Aug 13, 2024
·Updated
An unauthenticated remote attacker may use a reflected XSS vulnerability to obtain information from a user or reboot the affected device once.
Affected Software
48 affected components
All of the following
Pepperl-fuchs Icdm-rx\/tcp Socketserver Firmware<11.65
Any of the following
Pepperl-fuchs Icdm-rx\/tcp-16db9\/rj45-rm
Pepperl-fuchs Icdm-rx\/tcp-16rj45\/2rj45-pm
Pepperl-fuchs Icdm-rx\/tcp-16rj45\/rj45-rm
Pepperl-fuchs Icdm-rx\/tcp-2db9\/rj45-din
Pepperl-fuchs Icdm-rx\/tcp-2st\/rj45-din
Pepperl-fuchs Icdm-rx\/tcp-32rj45\/rj45-rm
Pepperl-fuchs Icdm-rx\/tcp-4db9\/2rj45-din
Pepperl-fuchs Icdm-rx\/tcp-4db9\/2rj45-pm
Pepperl-fuchs Icdm-rx\/tcp-8db9\/2rj45-pm
Pepperl-fuchs Icdm-rx\/tcp-db9\/rj45-din
Pepperl-fuchs Icdm-rx\/tcp-db9\/rj45-pm
Pepperl-fuchs Icdm-rx\/tcp-db9\/rj45-pm2
Pepperl-fuchs Icdm-rx\/tcp-st\/rj45-din
All of the following
Pepperl-fuchs Profinet Firmware<3.4.9
Any of the following
Pepperl-fuchs Icdm-rx\/pn-2db9\/rj45-din
Pepperl-fuchs Icdm-rx\/pn-2st\/rj45-din
Pepperl-fuchs Icdm-rx\/pn-4db9\/2rj45-din
Pepperl-fuchs Icdm-rx\/pn-db9\/rj45-din
Pepperl-fuchs Icdm-rx\/pn-db9\/rj45-pm
Pepperl-fuchs Icdm-rx\/pn-st\/rj45-din
All of the following
Pepperl-fuchs Profinet\/modbus Firmware<1.0.7
Any of the following
Pepperl-fuchs Icdm-rx\/pn1-2db9\/rj45-din
Pepperl-fuchs Icdm-rx\/pn1-2st\/rj45-din
Pepperl-fuchs Icdm-rx\/pn1-4db9\/2rj45-din
Pepperl-fuchs Icdm-rx\/pn1-db9\/rj45-din
Pepperl-fuchs Icdm-rx\/pn1-db9\/rj45-pm
Pepperl-fuchs Icdm-rx\/pn1-st\/rj45-din
All of the following
Any of the following
Pepperl-fuchs Modbus Router Firmware<7.09
Pepperl-fuchs Modbus Server Firmware<7.11
Pepperl-fuchs Modbus Tcp Firmware<7.11
Any of the following
Pepperl-fuchs Icdm-rx\/mod-4db9\/2rj45-din
Pepperl-fuchs Icdm-rx\/mod-db9\/rj45-din
Pepperl-fuchs Icdm-rx\/mod-st\/rj45-din
All of the following
Pepperl-fuchs Ethernet\/ip Firmware<7.22
Any of the following
Pepperl-fuchs Icdm-rx\/en-2db9\/rj45-din
Pepperl-fuchs Icdm-rx\/en-2st\/rj45-din
Pepperl-fuchs Icdm-rx\/en-4db9\/2rj45-din
Pepperl-fuchs Icdm-rx\/en-db9\/rj45-din
Pepperl-fuchs Icdm-rx\/en-db9\/rj45-pm
Pepperl-fuchs Icdm-rx\/en-st\/rj45-din
All of the following
Pepperl-fuchs Eip\/modbus Firmware<1.08
Any of the following
Pepperl-fuchs Icdm-rx\/en1-2db9\/rj45-din
Pepperl-fuchs Icdm-rx\/en1-2st\/rj45-din
Pepperl-fuchs Icdm-rx\/en1-4db9\/2rj45-din
Pepperl-fuchs Icdm-rx\/en1-db9\/rj45-din
Pepperl-fuchs Icdm-rx\/en1-db9\/rj45-pm
Pepperl-fuchs Icdm-rx\/en1-st\/rj45-din
Event History
Aug 13, 2024
CVE Published
via MITRE·12:32 PM
Data Sourced
via MITRE·12:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-5849?
CVE-2024-5849 is classified as a moderate severity vulnerability due to its potential impact on sensitive information and device functionality.
2
How do I fix CVE-2024-5849?
To mitigate CVE-2024-5849, update the affected Pepperl+Fuchs firmware to version 11.65 or higher.
3
Which devices are affected by CVE-2024-5849?
CVE-2024-5849 affects certain versions of Pepperl+Fuchs ICDM-RX/TCP Socketserver firmware, specifically those prior to version 11.65.
4
What type of vulnerability is CVE-2024-5849?
CVE-2024-5849 is a reflected cross-site scripting (XSS) vulnerability that allows unauthenticated remote attackers to manipulate user data.
5
Can CVE-2024-5849 lead to device reboots?
Yes, CVE-2024-5849 can allow attackers to reboot the affected device remotely.