CVE-2024-39815
CRITICALDescription
Improper check or handling of exceptional conditions vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enable an unauthenticated remote attacker to cause a denial of service. A specially-crafted HTTP request to pre-authentication resources can crash the service.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| vonets | var1200-h_firmware |
| vonets | var1200-h |
| vonets | var1200-l_firmware |
| vonets | var1200-l |
| vonets | var600-h_firmware |
| vonets | var600-h |
| vonets | vap11ac_firmware |
| vonets | vap11ac |
| vonets | vap11g-500s_firmware |
| vonets | vap11g-500s |
| vonets | vbg1200_firmware |
| vonets | vbg1200 |
| vonets | vap11s-5g_firmware |
| vonets | vap11s-5g |
| vonets | vap11s_firmware |
| vonets | vap11s |
| vonets | var11n-300_firmware |
| vonets | var11n-300 |
| vonets | vap11g-300_firmware |
| vonets | vap11g-300 |
| vonets | vap11n-300_firmware |
| vonets | vap11n-300 |
| vonets | vap11g_firmware |
| vonets | vap11g |
| vonets | vap11g-500_firmware |
| vonets | vap11g-500 |
| vonets | vga-1000_firmware |
| vonets | vga-1000 |
References
Other References
Frequently Asked Questions
What is CVE-2024-39815? +
How severe is CVE-2024-39815? +
What products are affected by CVE-2024-39815? +
How do I check if I'm vulnerable to CVE-2024-39815? +
Related Vulnerabilities
CometBFT is a distributed, Byzantine fault-tolerant, deterministic state machine replication engine. In the `blocksync` protocol peers send their `base` and …
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunderbird 145.
Sandbox escape due to incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and …
A heap overflow vulnerability in IPSec component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure allows an unauthenticated …
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunderbird 145.
Sandbox escape due to incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and …