CVE-2024-2377

Published Apr 30, 2024

Last updated 7 months ago

Overview

Description
A vulnerability exists in the too permissive HTTP response header web server settings of the SDM600. An attacker can take advantage of this and possibly carry out privileged actions and access sensitive information.
Source
cybersecurity@hitachienergy.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
7.6
Impact score
6
Exploitability score
0.9
Vector string
CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Severity
HIGH

Weaknesses

cybersecurity@hitachienergy.com
CWE-346

Social media

Hype score
Not currently trending