CVE-2024-0716

LOW

Byzoro Smart S150 Management Platform V31R02B15 - Info Disclosure

Title source: llm
STIX 2.1

Description

A vulnerability classified as problematic has been found in Byzoro Smart S150 Management Platform V31R02B15. This affects an unknown part of the file /log/download.php of the component Backup File Handler. The manipulation leads to information disclosure. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The identifier VDB-251541 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

References (4)

Core 4
Core References
Third Party Advisory vdb-entry technical-description
https://vuldb.com/?id.251541
Third Party Advisory signature permissions-required
https://vuldb.com/?ctiid.251541
Permissions Required, VDB Entry third-party-advisory
https://vuldb.com/?submit.265177

Scores

CVSS v3 3.1
EPSS 0.0006
EPSS Percentile 19.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-532 CWE-200
Status published
Products (1)
byzoro/smart_s150_firmware 31r02b15
Published Jan 19, 2024
Tracked Since Feb 18, 2026