CVE-2024-6414

MEDIUM

Parsec Automation TrakSYS 11.x.x - Info Disclosure

Title source: llm
STIX 2.1

Description

A vulnerability classified as problematic has been found in Parsec Automation TrakSYS 11.x.x. Affected is an unknown function of the file TS/export/contentpage of the component Export Page. The manipulation of the argument ID leads to direct request. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-270000. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Scores

CVSS v3 5.3
EPSS 0.0006
EPSS Percentile 17.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-425
Status published
Products (1)
Parsec Automation/TrakSYS 11.x.x
Published Jun 30, 2024
Tracked Since Feb 18, 2026