First published: Thu Mar 28 2024(Updated: )
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of Softing edgeConnector Siemens. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.0. The following CVEs are assigned: CVE-2024-0860.
Affected Software | Affected Version | How to fix |
---|---|---|
Softing edgeConnector |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-24-353 is rated at CVSS 8.0, indicating high severity.
To fix ZDI-24-353, it is crucial to apply the latest patches from Softing for the edgeConnector Siemens.
Organizations using Softing edgeConnector Siemens are affected by ZDI-24-353.
ZDI-24-353 allows network-adjacent attackers to bypass authentication on the affected installations.
No, authentication is not required to exploit the vulnerability described in ZDI-24-353.