iodata Vulnerabilities and Affected Products
Vulnerabilities associated with ud-lt1_firmware.
Products
Clear product- ud-lt1\/ex_firmware2 vulnerabilities
- ud-lt1_firmware2 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-52564HIGH | UD-LT1 and UD-LT1/EX Firmware Arbitrary OS Command ExecutionInclusion of undocumented features or chicken bits issue exists in UD-LT1 firmware Ver.2.1.8 and earlier and UD-LT1/EX firmware Ver.2.1.8 and earlier. A remote attacker may disable the firewall function of the affected products. As a result, an arbitrary OS command may be executed and/or configuration settings of the device may be altered. CWE-1242Dec 5, 2024 | CVSS7.5v3.0 | EPSS0.58% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-47133HIGH | UD-LT1 and UD-LT1/EX Firmware Admin Account Arbitrary OS Command ExecutionUD-LT1 firmware Ver.2.1.9 and earlier and UD-LT1/EX firmware Ver.2.1.9 and earlier allow a remote authenticated attacker with an administrative account to execute arbitrary OS commands. CWE-78Dec 5, 2024 | CVSS7.2v3.0 | EPSS0.904% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |