Siemens SCALANCE M-800, RUGGEDCOM RM1224 Exposure of Data Element to Wrong Session (CVE-2024-41977)

high Tenable OT Security Plugin ID 502366

Version 1.4

Sep 5, 2024, 5:04 AM

  • Plugin metadata (Add CISA's ICSA Reference Information tag)

Plugin Feed: 202409050504

Version 1.3

Sep 2, 2024, 6:05 PM

  • Detection (Fix affected products and update version check after vendor patch publication)

Plugin Feed: 202409021805

Version 1.2

Aug 26, 2024, 7:09 AM

  • CVSS metrics ("CVSSv2 score" set to 9.0)
  • CVSS metrics ("CVSSv2 vector" set to "CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C")
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:U/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:U/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "False")

Plugin Feed: 202408260709

Version 1.1

Aug 23, 2024, 10:02 PM

  • New

Plugin Feed: 202408232202

* Changelogs are generally available for changes made after Nov 1, 2022