Beveiligingsadvies

CVE-2024-41798

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-10-08 08:40:16
Laatst bijgewerkt 2024-10-08 14:06:17
Toegewezen door siemens
CVSS-score 9.8
Status PUBLISHED

Beschrijving

A vulnerability has been identified in SENTRON 7KM PAC3200 (All versions). Affected devices only provide a 4-digit PIN to protect from administrative access via Modbus TCP interface. Attackers with access to the Modbus TCP interface could easily bypass this protection by brute-force attacks or by sniffing the Modbus clear text communication.