CWE-668: Exposure of the Resource Wrong Sphere vulnerability exists that exposes a SSH
interface over the product network interface. This does not allow to directly exploit the product or
make any unintended operation as the SSH interface access is protected by an authentication
mechanism. Impacts are limited to port scanning and fingerprinting activities as well as attempts
to perform a potential denial of service attack on the exposed SSH interface.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 09:47
Type | Values Removed | Values Added |
---|---|---|
References | () https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2024-163-03&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2024-163-03.pdf - Vendor Advisory |
14 Aug 2024, 13:40
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo | |
CPE | cpe:2.3:o:schneider-electric:evlink_home_firmware:2.0.3.8.2_128:*:*:*:*:*:*:* cpe:2.3:h:schneider-electric:evlink_home:-:*:*:*:*:*:*:* cpe:2.3:o:schneider-electric:evlink_home_firmware:2.0.4.1.2_131:*:*:*:*:*:*:* |
|
References | () https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2024-163-03&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2024-163-03.pdf - Vendor Advisory | |
First Time |
Schneider-electric evlink Home
Schneider-electric Schneider-electric evlink Home Firmware |
13 Jun 2024, 18:36
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
12 Jun 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-12 13:15
Updated : 2024-11-21 09:47
NVD link : CVE-2024-5313
Mitre link : CVE-2024-5313
CVE.ORG link : CVE-2024-5313
JSON object : View
Products Affected
schneider-electric
- evlink_home_firmware
- evlink_home
CWE