Security Advisory

CVE-2024-57174

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-05 00:00:00
Last updated 2025-03-06 21:55:15
Assigner mitre
State PUBLISHED

Description

A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously unregistered domain name as the default DNS suffix. This allows attackers to register the unclaimed domain and point its wildcard DNS entry to an attacker-controlled IP address, making it possible to access sensitive information.