Vulnerabilities > CVE-2024-37040 - Unspecified vulnerability in Schneider-Electric Sage RTU Firmware

047910
CVSS 8.1 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
schneider-electric

Summary

CWE-120: Buffer Copy without Checking Size of Input (‘Classic Buffer Overflow’) vulnerability exists that could allow a user with access to the device’s web interface to cause a fault on the device when sending a malformed HTTP request.

Vulnerable Configurations

Part Description Count
OS
Schneider-Electric
29
Hardware
Schneider-Electric
6