CVE-2024-11075

Published Nov 19, 2024

Last updated 3 months ago

Overview

Description
A vulnerability in the Incoming Goods Suite allows a user with unprivileged access to the underlying system (e.g. local or via SSH) a privilege escalation to the administrative level due to the usage of component vendor Docker images running with root permissions. Exploiting this misconfiguration leads to the fact that an attacker can gain administrative control. over the whole system.
Source
psirt@sick.de
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.8
Impact score
6
Exploitability score
2
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Severity
HIGH

Weaknesses

psirt@sick.de
CWE-250

Social media

Hype score
Not currently trending
  1. 🚨 CVE-2024-11075 (Published: 2024-11-19) affects Incoming Goods Suite. Critical vulnerability identified in specific versions. Ensure your systems are updated to the latest patches to mitigate risks. For detailed remediation steps, check the full report: https://t.co/q96UM1t30E…

    @transilienceai

    22 Nov 2024

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. 🚨 CVE-2024-11075 (Published: 2024-11-19) - High severity vulnerability in SICK AG products. Affects specific versions. Remediation details available here: [SICK AG CSAF](https://t.co/srYBqFcNT5). Ensure your systems are updated! #CyberSecurity #CVE

    @transilienceai

    22 Nov 2024

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 CVE-2024-11075 (Published: 2024-11-19) - Critical vulnerability in SICK AG SCA-0003. Affects specific versions. Remediation steps are available at https://t.co/DIBz52wtFv. Ensure your systems are updated to mitigate risks! #CyberSecurity #Vulnerability #CVE

    @transilienceai

    22 Nov 2024

    19 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🚨 CVE-2024-11075 (Published: 2024-11-19) - A critical vulnerability in SICK AG SCA-0002 affects multiple versions. Users are urged to update to the latest version immediately to mitigate risks. For more details and remediation steps, visit: https://t.co/DIBz52wtFv #CyberSecurity

    @transilienceai

    22 Nov 2024

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🚨 CVE-2024-11075 (Published: 2024-11-19) - Critical vulnerability in SICK AG SCA-0001. Affects specific versions. 🛠️ Remediation steps are available at https://t.co/DIBz52wtFv. Ensure your systems are updated to protect against potential exploits! #CyberSecurity… https://t.co/Y

    @transilienceai

    22 Nov 2024

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🚨 CVE-2024-11075 (Published: 2024-11-19) - A critical vulnerability affecting SICK products. Ensure your systems are updated to the latest versions to mitigate risks. For detailed remediation steps, check the official document: https://t.co/IfZt2ufCP9 #CyberSecurity

    @transilienceai

    22 Nov 2024

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. 🚨 CVE-2024-11075 (Published: 2024-11-19) - Critical vulnerability in SICK products. Affects multiple versions. Immediate remediation is essential! For detailed guidance, check the official document here: https://t.co/IfZt2ufCP9 #CyberSecurity #VulnerabilityAlert

    @transilienceai

    22 Nov 2024

    10 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. 🚨 CVE-2024-11075 (Published: 2024-11-19) - A critical vulnerability has been identified in SICK products. Affected versions are detailed in the advisory. Immediate remediation is advised. For more info, check the official document: https://t.co/IfZt2ufCP9 #CyberSecurity

    @transilienceai

    22 Nov 2024

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. CVE-2024-11075 A vulnerability in the Incoming Goods Suite allows a user with unprivileged access to the underlying system (e.g. local or via SSH) a privilege escalation to the admi… https://t.co/h5PLD9vnnj

    @CVEnew

    19 Nov 2024

    222 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes