CVE-2024-6596

An unauthenticated remote attacker can run malicious c# code included in curve files and execute commands in the users context.
References
Link Resource
https://cert.vde.com/en/advisories/VDE-2024-041 Third Party Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:endress:echo_curve_viewer:*:*:*:*:*:*:*:*
cpe:2.3:a:endress:fieldcare_sfe500_package:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:endress:field_xpert_smt79_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:endress:field_xpert_smt79:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:endress:field_xpert_smt77_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:endress:field_xpert_smt77:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:endress:field_xpert_smt70_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:endress:field_xpert_smt70:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:endress:field_xpert_smt50_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:endress:field_xpert_smt50:-:*:*:*:*:*:*:*

History

01 Oct 2024, 12:26

Type Values Removed Values Added
References () https://cert.vde.com/en/advisories/VDE-2024-041 - () https://cert.vde.com/en/advisories/VDE-2024-041 - Third Party Advisory
First Time Endress echo Curve Viewer
Endress field Xpert Smt79 Firmware
Endress field Xpert Smt50
Endress field Xpert Smt70
Endress field Xpert Smt77 Firmware
Endress field Xpert Smt77
Endress fieldcare Sfe500 Package
Endress field Xpert Smt70 Firmware
Endress field Xpert Smt79
Endress
Endress field Xpert Smt50 Firmware
CPE cpe:2.3:h:endress:field_xpert_smt50:-:*:*:*:*:*:*:*
cpe:2.3:a:endress:fieldcare_sfe500_package:*:*:*:*:*:*:*:*
cpe:2.3:o:endress:field_xpert_smt79_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:endress:field_xpert_smt50_firmware:-:*:*:*:*:*:*:*
cpe:2.3:a:endress:echo_curve_viewer:*:*:*:*:*:*:*:*
cpe:2.3:h:endress:field_xpert_smt79:-:*:*:*:*:*:*:*
cpe:2.3:h:endress:field_xpert_smt77:-:*:*:*:*:*:*:*
cpe:2.3:h:endress:field_xpert_smt70:-:*:*:*:*:*:*:*
cpe:2.3:o:endress:field_xpert_smt77_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:endress:field_xpert_smt70_firmware:-:*:*:*:*:*:*:*

10 Sep 2024, 12:09

Type Values Removed Values Added
Summary
  • (es) Un atacante remoto no autenticado puede ejecutar código C# malicioso incluido en archivos de curva y ejecutar comandos en el contexto de los usuarios.

10 Sep 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-10 08:15

Updated : 2024-10-01 12:26


NVD link : CVE-2024-6596

Mitre link : CVE-2024-6596

CVE.ORG link : CVE-2024-6596


JSON object : View

Products Affected

endress

  • field_xpert_smt79_firmware
  • field_xpert_smt70
  • field_xpert_smt50
  • field_xpert_smt50_firmware
  • fieldcare_sfe500_package
  • field_xpert_smt77_firmware
  • field_xpert_smt77
  • field_xpert_smt70_firmware
  • echo_curve_viewer
  • field_xpert_smt79
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')