First published: Thu Mar 28 2024(Updated: )
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of Softing edgeConnector Siemens. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.0. The following CVEs are assigned: CVE-2024-0860.
Affected Software | Affected Version | How to fix |
---|---|---|
Softing edgeConnector |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-CAN-20492 is rated at 8.0 according to CVSS.
To fix ZDI-CAN-20492, ensure that you apply the latest security patches provided by Softing for edgeConnector Siemens.
ZDI-CAN-20492 affects installations of Softing edgeConnector Siemens that have not implemented the necessary security measures.
No, authentication is not required to exploit ZDI-CAN-20492, making it particularly concerning.
ZDI-CAN-20492 can be exploited by network-adjacent attackers.