Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-2013


An authentication bypass vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway component that if exploited allows attackers without any access to interact with the services and the post-authentication attack surface.


Published

2024-06-11T14:15:11.503

Last Modified

2024-11-21T09:08:48.677

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 10.0 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-288
  • Type: Primary
    CWE-306

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application hitachienergy foxman-un r15a Yes
Application hitachienergy foxman-un r15b Yes
Application hitachienergy foxman-un r16a Yes
Application hitachienergy foxman-un r16b Yes
Application hitachienergy unem r15a Yes
Application hitachienergy unem r15b Yes
Application hitachienergy unem r15b Yes
Application hitachienergy unem r16b Yes
Application hitachienergy unem r16b Yes

References