VDB

CVE-2024-32011

CVE-2024-32011 PUBLISHED CVSS 8.800000190734863 HIGH

A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application is vulnerable to run arbitrary commands via the user interface. This user interface can be used via the network and allows the execution of commands as administrative application user.

EPSS 0.09% · 25.8th percentile

Risk Scores

CVSS 3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.09%
25.8th percentile

Affected Products

VendorProductVersions
SiemensSpectrum Power 40

Timeline

  • Nov 11, 2025 CVE Published
  • Nov 11, 2025 PoC Published
  • Nov 12, 2025 EPSS Score
  • Nov 12, 2025 Coalition ESS Score
  • Nov 12, 2025 PoC Published
  • Nov 13, 2025 PoC Published
  • Nov 15, 2025 Coalition ESS Score
  • Nov 17, 2025 EPSS Score
  • Nov 22, 2025 EPSS Score
  • Nov 27, 2025 EPSS Score
  • Nov 27, 2025 Coalition ESS Score
  • Dec 3, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›