CVE-2024-8936
Severity CVSS v4.0:
HIGH
Type:
CWE-20
Input Validation
Publication date:
13/11/2024
Last modified:
13/11/2024
Description
CWE-20: Improper Input Validation vulnerability exists that could lead to loss of confidentiality of controller memory<br />
after a successful Man-In-The-Middle attack followed by sending a crafted Modbus function call used to tamper<br />
with memory.
Impact
Base Score 4.0
8.30
Severity 4.0
HIGH
Base Score 3.x
6.50
Severity 3.x
MEDIUM



