Description

Lua apps can be deployed, removed, started, reloaded or stopped without authorization via AppManager. This allows an attacker to remove legitimate apps creating a DoS attack, read and write files or load apps that use all features of the product available to a customer.

INFO

Published Date :

2024-12-06T12:38:55.781Z

Last Modified :

2024-12-09T14:06:40.506Z

Source :

SICK AG
AFFECTED PRODUCTS

The following products are affected by CVE-2024-10776 vulnerability.

Vendors Products
Sick
  • Inspector61x Firmware
  • Inspector62x Firmware

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact