Beveiligingsadvies

CVE-2024-32010

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-11-11 20:20:16
Laatst bijgewerkt 2025-11-12 21:32:00
Toegewezen door siemens
CVSS-score 8.5
Status PUBLISHED

Beschrijving

A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application is vulnerable to extraction of database credentials via a world-readable credential file. This allows an attacker to connect to the database as privileged application user and to run system commands via the database.