Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-50094 | VIMESA VHF/FM Transmitter Blue Plus is suffering from a Denial-of-Service (DoS) vulnerability. An unauthenticated attacker can issue an unauthorized HTTP GET request to the unprotected endpoint 'doreboot' and restart the transmitter operations. |
Solution
No solution given by the vendor.
Workaround
VIMESA has not responded to requests to work with CISA to mitigate these vulnerabilities. Users of the affected products are encouraged to contact VIMESA https://www.vimesa.es/contactenos/ for additional information.
Thu, 24 Oct 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vimesa
Vimesa vhf\/fm Transmitter Blue Plus |
|
| CPEs | cpe:2.3:a:vimesa:vhf\/fm_transmitter_blue_plus:9.7.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Vimesa
Vimesa vhf\/fm Transmitter Blue Plus |
|
| Metrics |
ssvc
|
Thu, 24 Oct 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | VIMESA VHF/FM Transmitter Blue Plus is suffering from a Denial-of-Service (DoS) vulnerability. An unauthenticated attacker can issue an unauthorized HTTP GET request to the unprotected endpoint 'doreboot' and restart the transmitter operations. | |
| Title | Improper Access Control in Input in VIMESA VHF/FM Transmitter Blue Plus | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-10-24T19:53:10.104Z
Reserved: 2024-10-09T14:57:45.229Z
Link: CVE-2024-9692
Updated: 2024-10-24T19:53:03.271Z
Status : Awaiting Analysis
Published: 2024-10-24T17:15:17.953
Modified: 2024-10-25T12:56:07.750
Link: CVE-2024-9692
No data.
OpenCVE Enrichment
No data.
EUVD