Security Advisory

CVE-2024-11014

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-11-29 08:06:19
Last updated 2025-07-24 14:37:20
Assigner NEC
State PUBLISHED

Description

Cross-site request forgery (CSRF) vulnerability in NEC Corporation UNIVERGE IX from Ver9.2 to Ver10.10.21, for Ver10.8 up to Ver10.8.27 and for Ver10.9 up to Ver10.9.14 allows a attacker to hijack the authentication of screens on the device via the management interface.