Fiche vulnérabilité
CVE-2024-4638 : faille élevée moxa oncell g3470a-lte-eu-t firmware (CVSS 8.8)
Description
OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to a lack of neutralized inputs in the web key upload function. An attacker could modify the intended commands sent to target functions, which could cause malicious users to execute unauthorized commands.
En bref
- Sévérité
- Élevée (CVSS 8.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 25 juin 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- moxa oncell g3470a-lte-eu-t firmware
- moxa oncell g3470a-lte-eu firmware
- moxa oncell g3470a-lte-us firmware
- moxa oncell g3470a-lte-us-t firmware