CVE-2024-21785
CRITICALDescription
A leftover debug code vulnerability exists in the Telnet Diagnostic Interface functionality of AutomationDirect P3-550E 1.2.10.9. A specially crafted series of network requests can lead to unauthorized access. An attacker can send a sequence of requests to trigger this vulnerability.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| automationdirect | p3-550e_firmware |
| automationdirect | p3-550e_firmware |
| automationdirect | p3-550e |
| automationdirect | p3-550_firmware |
| automationdirect | p3-550_firmware |
| automationdirect | p3-550 |
| automationdirect | p3-530_firmware |
| automationdirect | p3-530_firmware |
| automationdirect | p3-530 |
| automationdirect | p2-550_firmware |
| automationdirect | p2-550_firmware |
| automationdirect | p2-550 |
| automationdirect | p1-550_firmware |
| automationdirect | p1-550_firmware |
| automationdirect | p1-550 |
| automationdirect | p1-540_firmware |
| automationdirect | p1-540_firmware |
| automationdirect | p1-540 |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-21785? +
How severe is CVE-2024-21785? +
What products are affected by CVE-2024-21785? +
How do I check if I'm vulnerable to CVE-2024-21785? +
Related Vulnerabilities
An authenticated admin user with access to both the management WebUI and command line interface on a Firebox can enable …
A vulnerability exists in serial device servers where active debug code remains enabled in the UART interface. An attacker with …
The Four-Faith F3x36 router using firmware v2.0.0 is vulnerable to an authentication bypass vulnerability in the administrative web server. Authentication …
The Four-Faith F3x36 router using firmware v2.0.0 is vulnerable to authentication bypass due to hard-coded credentials in the administrative web …
Multiple SHARP routers leave the hidden debug function enabled. An arbitrary OS command may be executed with the root privilege …
Active Debug Code in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, …