CVE-2025-24341

A vulnerability in the web application of ctrlX OS allows a remote authenticated (low-privileged) attacker to induce a Denial-of-Service (DoS) condition on the device via multiple crafted HTTP requests. In the worst case, a full power cycle is needed to regain control of the device.
Configurations

No configuration.

History

02 May 2025, 13:53

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad en la aplicación web de ctrlX OS permite a un atacante remoto autenticado (con privilegios bajos) inducir una denegación de servicio (DoS) en el dispositivo mediante múltiples solicitudes HTTP manipuladas. En el peor de los casos, se requiere un reinicio completo para recuperar el control del dispositivo.

30 Apr 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-30 12:15

Updated : 2025-05-02 13:53


NVD link : CVE-2025-24341

Mitre link : CVE-2025-24341

CVE.ORG link : CVE-2025-24341


JSON object : View

Products Affected

No product.

CWE
CWE-770

Allocation of Resources Without Limits or Throttling