CVE-2024-8889 - CIRCUTOR TCP2RS+ Unauthenticated Configuration Manipulation

2 months ago 27
ARTICLE AD BOX
CVE ID : CVE-2024-8889
Published : Sept. 18, 2024, 12:15 p.m. | 24 minutes ago
Description : Vulnerability in CIRCUTOR TCP2RS+ firmware version 1.3b, which could allow an attacker to modify any configuration value, even if the device has the user/password authentication option enabled, without authentication by sending packets through the UDP protocol and port 2000, deconfiguring the device and thus disabling its use. This equipment is at the end of its useful life cycle.
Severity: 9.3 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article