CVE-2024-40617
MEDIUM 6.5EPSS 1.4%
Path traversal vulnerability exists in FUJITSU Network Edgiot GW1500 (M2M-GW for FENICS). If a remote authenticated attacker with User Class privilege sends a specially crafted request to the affected product, access restricted files containing sensitive information may be accessed. As a result, Administrator Class privileges of the product may be hijacked.
- CVSS v3.1
- 6.5 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N - CVSS v3.1
- 6.5 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N - EPSS
- 1.42% chance of exploitation in the next 30 days, 71th percentile
- Published
- 2024-07-17
- Updated
- 2024-10-29
Proof-of-concept exploits (1)
- KyssK00L/CVE-2024-406177★ · 2024-07-30