← Back

CVE-2024-4638

nvd nist
Published: Jun 25, 2024Modified: Mar 10, 2025

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

OnCell G3470A-LTE Series firmware versions v1.7.7 and prior have been identified as vulnerable due to a lack of neutralized inputs in the web key upload function. An attacker could modify the intended commands sent to target functions, which could cause malicious users to execute unauthorized commands.

Affected (4)

4 products
Oncell G3470a Lte Eu T Firmware
Oncell G3470a Lte Eu Firmware
Oncell G3470a Lte Us Firmware
Oncell G3470a Lte Us T Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.7.7
Running on/withPlatform Versions
Moxa
Oncell G3470a Lte Eu T
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.7.7
Running on/withPlatform Versions
Moxa
Oncell G3470a Lte Eu
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.7.7
Running on/withPlatform Versions
Moxa
Oncell G3470a Lte Us
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.7.7
Running on/withPlatform Versions
Moxa
Oncell G3470a Lte Us T
All versions

Timeline

No history available yet.