CWE-668: Exposure of the Resource Wrong Sphere vulnerability exists that exposes a SSH
interface over the product network interface. This does not allow to directly exploit the product or
make any unintended operation as the SSH interface access is protected by an authentication
mechanism. Impacts are limited to port scanning and fingerprinting activities as well as attempts
to perform a potential denial of service attack on the exposed SSH interface.
References
Configurations
Configuration 1 (hide)
AND |
|
History
14 Aug 2024, 13:40
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:schneider-electric:evlink_home_firmware:2.0.3.8.2_128:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:evlink_home_firmware:2.0.4.1.2_131:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:evlink_home:-:*:*:*:*:*:*:* |
|
References | () https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2024-163-03&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2024-163-03.pdf - Vendor Advisory | |
CWE | NVD-CWE-noinfo | |
First Time |
Schneider-electric evlink Home
Schneider-electric evlink Home Firmware Schneider-electric |
13 Jun 2024, 18:36
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
12 Jun 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-12 13:15
Updated : 2024-08-14 13:40
NVD link : CVE-2024-5313
Mitre link : CVE-2024-5313
CVE.ORG link : CVE-2024-5313
JSON object : View
Products Affected
schneider-electric
- evlink_home
- evlink_home_firmware
CWE