CVE-2024-9787

A vulnerability, which was classified as problematic, was found in Contemporary Control System BASrouter BACnet BASRT-B 2.7.2. This affects an unknown part of the component UDP Packet Handler. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ccontrols:basrouter_bacnet_basrt-b_firmware:2.7.2:*:*:*:*:*:*:*
cpe:2.3:h:ccontrols:basrouter_bacnet_basrt-b:-:*:*:*:*:*:*:*

History

25 Nov 2024, 17:39

Type Values Removed Values Added
First Time Ccontrols basrouter Bacnet Basrt-b
Ccontrols
Ccontrols basrouter Bacnet Basrt-b Firmware
References () https://github.com/isZzzz/BASRT-B_BriefDoS_Document/blob/main/report.md - () https://github.com/isZzzz/BASRT-B_BriefDoS_Document/blob/main/report.md - Broken Link
References () https://vuldb.com/?ctiid.279939 - () https://vuldb.com/?ctiid.279939 - Permissions Required
References () https://vuldb.com/?id.279939 - () https://vuldb.com/?id.279939 - Third Party Advisory
References () https://vuldb.com/?submit.414499 - () https://vuldb.com/?submit.414499 - Third Party Advisory
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:ccontrols:basrouter_bacnet_basrt-b_firmware:2.7.2:*:*:*:*:*:*:*
cpe:2.3:h:ccontrols:basrouter_bacnet_basrt-b:-:*:*:*:*:*:*:*

15 Oct 2024, 12:58

Type Values Removed Values Added
Summary
  • (es) Se ha descubierto una vulnerabilidad clasificada como problemática en el Contemporary Control System BASrouter BACnet BASRT-B 2.7.2. Afecta a una parte desconocida del componente UDP Packet Handler. La manipulación provoca una denegación de servicio. Es posible iniciar el ataque de forma remota. El exploit se ha hecho público y puede utilizarse. Se contactó al proveedor con antelación sobre esta revelación, pero no respondió de ninguna manera.

10 Oct 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-10 14:15

Updated : 2024-11-25 17:39


NVD link : CVE-2024-9787

Mitre link : CVE-2024-9787

CVE.ORG link : CVE-2024-9787


JSON object : View

Products Affected

ccontrols

  • basrouter_bacnet_basrt-b_firmware
  • basrouter_bacnet_basrt-b
CWE
CWE-404

Improper Resource Shutdown or Release

NVD-CWE-noinfo