CVE-2024-41176
7.3
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Exploitability: 1.8 / Impact: 5.5
Source: NVD (Secondary)
Description
The MPD package included in TwinCAT/BSD allows an authenticated, low-privileged local
attacker to induce a Denial-of-Service (DoS) condition on the daemon and execute code in
the context of user “root” via a crafted HTTP request.
Affected (2)
Products: Beckhoff: Mdp Package, Twincat/bsd
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.2.7.0 | |
| Before 14.1.2.0 |
References (1)
Source: info@cert.vde.com
MitigationThird Party Advisory
Timeline
No history available yet.