CVE-2024-37036

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
12/06/2024
Last modified:
14/08/2024

Description

CWE-787: Out-of-bounds Write vulnerability exists that could result in an authentication bypass<br /> when sending a malformed POST request and particular configuration parameters are set.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:schneider-electric:sage_rtu_firmware:*:*:*:*:*:*:*:* c3414-500-s02k5_p8 (including)
cpe:2.3:h:schneider-electric:sage_1410:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:sage_1430:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:sage_1450:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:sage_2400:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:sage_3030_magnum:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:sage_4400:-:*:*:*:*:*:*:*