Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-41795


A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected devices is vulnerable to Cross-Site Request Forgery (CSRF) attacks. This could allow an unauthenticated attacker to change arbitrary device settings by tricking a legitimate device administrator to click on a malicious link.


Published

2025-04-08T09:15:20.350

Last Modified

2025-09-23T16:06:17.087

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-352

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System siemens 7kt_pac1260_data_manager_firmware * Yes
Hardware siemens 7kt_pac1260_data_manager - No

References