A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 R8.2 SP3 (All versions), Omnivise T3000 R8.2 SP4 (All versions). The affected system exposes the port of an internal application on the public network interface allowing an attacker to circumvent authentication and directly access the exposed application.
History

Wed, 14 Aug 2024 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Siemens omnivise T3000 Application Server
CPEs cpe:2.3:a:siemens:omnivise_t3000:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:omnivise_t3000:r8.2_sp3:*:*:*:*:*:*:*
cpe:2.3:a:siemens:omnivise_t3000:r8.2_sp4:*:*:*:*:*:*:*
cpe:2.3:a:siemens:omnivise_t3000_application_server:r9.2:*:*:*:*:*:*:*
Vendors & Products Siemens omnivise T3000 Application Server

Tue, 13 Aug 2024 08:00:00 +0000

Type Values Removed Values Added
Description A vulnerability has been identified in Omnivise T3000 Application Server (All versions). The affected system exposes the port of an internal application on the public network interface allowing an attacker to circumvent authentication and directly access the exposed application. A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 R8.2 SP3 (All versions), Omnivise T3000 R8.2 SP4 (All versions). The affected system exposes the port of an internal application on the public network interface allowing an attacker to circumvent authentication and directly access the exposed application.

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published: 2024-08-02T10:36:20.639Z

Updated: 2024-08-14T20:47:43.341Z

Reserved: 2024-06-21T08:28:10.678Z

Link: CVE-2024-38879

cve-icon Vulnrichment

Updated: 2024-08-02T13:35:44.023Z

cve-icon NVD

Status : Undergoing Analysis

Published: 2024-08-02T11:16:42.510

Modified: 2024-08-13T08:15:11.433

Link: CVE-2024-38879

cve-icon Redhat

No data.