OPW Fuel Management Systems SiteSentinel could allow an attacker to bypass authentication to the server and obtain full admin privileges.
History

Fri, 27 Sep 2024 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Opwglobal
Opwglobal sitesentinel Firmware
CPEs cpe:2.3:o:opwglobal:sitesentinel_firmware:*:*:*:*:*:*:*:*
Vendors & Products Opwglobal
Opwglobal sitesentinel Firmware
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 27 Sep 2024 16:45:00 +0000

Type Values Removed Values Added
Description OPW Fuel Management Systems SiteSentinel could allow an attacker to bypass authentication to the server and obtain full admin privileges.
Title OPW Fuel Management Systems SiteSentinel Missing Authentication for Critical Function
Weaknesses CWE-306
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2024-09-27T16:33:39.522Z

Updated: 2024-09-27T19:19:33.579Z

Reserved: 2024-08-29T14:29:19.568Z

Link: CVE-2024-8310

cve-icon Vulnrichment

Updated: 2024-09-27T19:17:52.703Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-09-27T17:15:13.970

Modified: 2024-09-30T12:45:57.823

Link: CVE-2024-8310

cve-icon Redhat

No data.