CVE-2024-10456

Delta Electronics InfraSuite Device Master versions prior to 1.0.12 are affected by a deserialization vulnerability that targets the Device-Gateway, which could allow deserialization of arbitrary .NET objects prior to authentication.
Configurations

No configuration.

History

01 Nov 2024, 12:57

Type Values Removed Values Added
Summary
  • (es) Las versiones de Delta Electronics InfraSuite Device Master anteriores a 1.0.12 se ven afectadas por una vulnerabilidad de deserialización que afecta a Device-Gateway, lo que podría permitir la deserialización de objetos .NET arbitrarios antes de la autenticación.

30 Oct 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-30 18:15

Updated : 2024-11-01 12:57


NVD link : CVE-2024-10456

Mitre link : CVE-2024-10456

CVE.ORG link : CVE-2024-10456


JSON object : View

Products Affected

No product.

CWE
CWE-502

Deserialization of Untrusted Data