CVE-2024-0568

CWE-287: Improper Authentication vulnerability exists that could cause unauthorized tampering of device configuration over NFC communication.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:se:rmnf22tb30_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:se:rmnf22tb30:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:se:renf22r2mmw_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:se:renf22r2mmw:-:*:*:*:*:*:*:*

History

30 Oct 2024, 18:52

Type Values Removed Values Added
First Time Se renf22r2mmw
Se
Se rmnf22tb30
Se rmnf22tb30 Firmware
Se renf22r2mmw Firmware
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:se:renf22r2mmw_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:se:rmnf22tb30:-:*:*:*:*:*:*:*
cpe:2.3:h:se:renf22r2mmw:-:*:*:*:*:*:*:*
cpe:2.3:o:se:rmnf22tb30_firmware:*:*:*:*:*:*:*:*
Summary
  • (es) CWE-287: Existe una vulnerabilidad de autenticación incorrecta que podría provocar una manipulación no autorizada de la configuración del dispositivo a través de la comunicación NFC.
References () https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2024-044-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2024-044-02.pdf - () https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2024-044-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2024-044-02.pdf - Vendor Advisory

14 Feb 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-14 17:15

Updated : 2024-10-30 18:52


NVD link : CVE-2024-0568

Mitre link : CVE-2024-0568

CVE.ORG link : CVE-2024-0568


JSON object : View

Products Affected

se

  • rmnf22tb30_firmware
  • rmnf22tb30
  • renf22r2mmw
  • renf22r2mmw_firmware
CWE
NVD-CWE-noinfo CWE-287

Improper Authentication