The Eaton Foreseer software provides multiple customizable input fields for the users to configure parameters in the tool like alarms, reports, etc. Some of these input fields were not checking the length and bounds of the entered value. The exploit of this security flaw by a bad actor may result in excessive memory consumption or integer overflow.
Metrics
Affected Vendors & Products
References
History
Thu, 19 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Eaton
Eaton foreseer Electrical Power Monitoring System |
|
CPEs | cpe:2.3:a:eaton:foreseer_electrical_power_monitoring_system:*:*:*:*:*:*:*:* | |
Vendors & Products |
Eaton
Eaton foreseer Electrical Power Monitoring System |
Fri, 13 Sep 2024 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 13 Sep 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The Eaton Foreseer software provides multiple customizable input fields for the users to configure parameters in the tool like alarms, reports, etc. Some of these input fields were not checking the length and bounds of the entered value. The exploit of this security flaw by a bad actor may result in excessive memory consumption or integer overflow. | |
Weaknesses | CWE-1284 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Eaton
Published: 2024-09-13T16:48:32.815Z
Updated: 2024-09-13T17:31:07.993Z
Reserved: 2024-04-03T11:17:01.662Z
Link: CVE-2024-31416
Vulnrichment
Updated: 2024-09-13T17:31:03.659Z
NVD
Status : Analyzed
Published: 2024-09-13T17:15:12.090
Modified: 2024-09-19T19:06:59.787
Link: CVE-2024-31416
Redhat
No data.