CVE-2024-5313

MEDIUM
6.5CVSS
Published: 2024-06-12
Updated: 2024-11-21
AI Analysis

Description

CWE-668: Exposure of the Resource Wrong Sphere vulnerability exists that exposes a SSH interface over the product network interface. This does not allow to directly exploit the product or make any unintended operation as the SSH interface access is protected by an authentication mechanism. Impacts are limited to port scanning and fingerprinting activities as well as attempts to perform a potential denial of service attack on the exposed SSH interface.

CVSS Metrics

Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
Attack Vector
network
Complexity
low
Privileges
none
User Action
none
Scope
unchanged
Confidentiality
low
Integrity
none
Availability
low
Weaknesses
CWE-668NVD-CWE-noinfo

Metadata

Primary Vendor
SCHNEIDER-ELECTRIC
Published
6/12/2024
Last Modified
11/21/2024
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

schneider-electric : evlink_home_firmwareschneider-electric : evlink_home_firmware

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2024-5313 | MEDIUM Severity | CVEDatabase.com | CVEDatabase.com