CVE-2024-12430 PUBLISHED CVSS 7 HIGH

After successfully exploiting CVE-2024-12429 (directory traversal), a successfully authenticated attacker can inject arbitrary commands into a specifically crafted file, which then will be executed by root user

EPSS 0.07% · 20.9th percentile

Risk Scores

CVSS v3.1
7
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.07%
20.9th percentile

Affected Products

VendorProductVersions
ABBAC500 V3 products (PM5xxx) < 3.8.0

Timeline

References

Open in Interactive Console →