CVE-2024-8892 - "CIRCUTOR TCP2RS+ Configuration Modification Remote Authentication Bypass"

1 month ago 10
ARTICLE AD BOX
CVE ID : CVE-2024-8892
Published : Sept. 18, 2024, 1:15 p.m. | 24 minutes ago
Description : Vulnerability in CIRCUTOR TCP2RS+ firmware version 1.3b, which could allow an attacker to modify any configuration value, even if the device has the user/password authentication option enabled, without authentication by sending packets through the UDP protocol and port 2000, deconfiguring the device and thus disabling its use. This equipment is at the end of its useful life cycle.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article