CVE-2024-25972

high

Description

Initialization of a resource with an insecure default vulnerability in OET-213H-BTS1 sold in Japan by Atsumi Electric Co., Ltd. allows a network-adjacent unauthenticated attacker to configure and control the affected product.

References

https://www.atsumi.co.jp/pdf/oet-213h-bts1.pdf

https://www.atsumi.co.jp/info-20240229.html

https://jvn.jp/en/jp/JVN77203800/

Details

Source: Mitre, NVD

Published: 2024-03-01

Updated: 2024-11-04

Risk Information

CVSS v2

Base Score: 4.8

Vector: CVSS2#AV:A/AC:L/Au:N/C:P/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 8.3

Vector: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L

Severity: High