Description

An unauthenticated remote attacker can run malicious c# code included in curve files and execute commands in the users context.

INFO

Published Date :

2024-09-10T08:01:26.429Z

Last Modified :

2024-09-10T18:46:17.099Z

Source :

CERTVDE
AFFECTED PRODUCTS

The following products are affected by CVE-2024-6596 vulnerability.

Vendors Products
Endress
  • Echo Curve Viewer
  • Field Xpert Smt50
  • Field Xpert Smt50 Firmware
  • Field Xpert Smt70
  • Field Xpert Smt70 Firmware
  • Field Xpert Smt77
  • Field Xpert Smt77 Firmware
  • Field Xpert Smt79
  • Field Xpert Smt79 Firmware
  • Fieldcare Sfe500 Package
Endress\+hauser
  • Echo Curve Viewer Firmware
  • Field Xpert Smt50 Firmware
  • Field Xpert Smt70 Firmware
  • Field Xpert Smt77 Firmware
  • Field Xpert Smt79 Firmware
  • Fieldcare Sfe500 Package Usb Firmware
  • Fieldcare Sfe500 Package Web-package Firmware
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-6596.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact