CVE-2024-34328

MEDIUM

Sielox AnyWare <2.1.2 - Open Redirect

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2024-34328. PoCs published by 0xsu3ks.

AI-analyzed exploit summary This repository provides a detailed technical analysis of CVE-2024-34328, an open redirection vulnerability in Sielox AnyWare 2.1.2. It includes a description of the exploit mechanism, proof-of-concept images, and mitigation strategies.

Description

An open redirect in Sielox AnyWare v2.1.2 allows attackers to execute a man-in-the-middle attack via a crafted URL.

Exploits (1)

nomisec WRITEUP
by 0xsu3ks · poc
https://github.com/0xsu3ks/CVE-2024-34328

This repository provides a detailed technical analysis of CVE-2024-34328, an open redirection vulnerability in Sielox AnyWare 2.1.2. It includes a description of the exploit mechanism, proof-of-concept images, and mitigation strategies.

Classification
Writeup 90%
Attack Type
Other
Complexity
Trivial
Reliability
Reliable
Target: Sielox AnyWare 2.1.2
No auth needed
Prerequisites: Access to craft a malicious URL with a modified Host header
devstral-2 · analyzed Feb 18, 2026 Full analysis →

References (2)

Core 2
Core References
Various Sources
https://sielox.com

Scores

CVSS v3 6.3
EPSS 0.0016
EPSS Percentile 5.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-601
Status published
Published Jul 31, 2025
Tracked Since Feb 18, 2026