CVE-2024-8889

Vulnerability in CIRCUTOR TCP2RS+ firmware version 1.3b, which could allow an attacker to modify any configuration value, even if the device has the user/password authentication option enabled, without authentication by sending packets through the UDP protocol and port 2000, deconfiguring the device and thus disabling its use. This equipment is at the end of its useful life cycle.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:h:circutor:tcp2rs\+_firmware:1.3b:*:*:*:*:*:*:*
cpe:2.3:h:circutor:tcp2rs\+:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-09-18 12:15

Updated : 2024-10-07 17:09


NVD link : CVE-2024-8889

Mitre link : CVE-2024-8889

CVE.ORG link : CVE-2024-8889


JSON object : View

Products Affected

circutor

  • tcp2rs\+_firmware
  • tcp2rs\+
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo