CVE-2024-2741

HIGH

Planet IGS-4215-16T2S - Firmware v1.305b210528 - CSRF

Title source: llm
STIX 2.1

Description

Cross-Site Request Forgery (CSRF) vulnerability in Planet IGS-4215-16T2S, affecting firmware version 1.305b210528. This vulnerability could allow a remote attacker to trick some authenticated users into performing actions in their session, such as adding or updating accounts through the Switch web interface.

Scores

CVSS v3 7.1
EPSS 0.0022
EPSS Percentile 13.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-352
Status published
Products (1)
Planet/IGS-4215-16T2S 1.305b210528
Published Apr 11, 2024
Tracked Since Feb 18, 2026