CVE-2024-26005
MEDIUMDescription
An unauthenticated remote attacker can gain service level privileges through an incomplete cleanup during service restart after a DoS.
Is your site exposed to CVE-2024-26005?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| phoenixcontact | charx_sec-3000_firmware |
| phoenixcontact | charx_sec-3000 |
| phoenixcontact | charx_sec-3050_firmware |
| phoenixcontact | charx_sec-3050 |
| phoenixcontact | charx_sec-3100_firmware |
| phoenixcontact | charx_sec-3100 |
| phoenixcontact | charx_sec-3150_firmware |
| phoenixcontact | charx_sec-3150 |
References
Frequently Asked Questions
What is CVE-2024-26005? +
How severe is CVE-2024-26005? +
What products are affected by CVE-2024-26005? +
How do I check if I'm vulnerable to CVE-2024-26005? +
Related Vulnerabilities
There is an incomplete cleanup vulnerability in Qt Network's Schannel support on Windows which can lead to a Denial of …
Improper cleanup of shared register resources in GPU firmware could allow an admin-privileged attacker from a Guest Virtual machine (VM) …
A parser state isolation vulnerability in misp-stix could cause data from a previously processed STIX document to be retained and …
Incomplete cleanup in GetUserMedia in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process …
Incomplete cleanup in Chromoting in Google Chrome on on Mac prior to 155.0.8059.39 allowed a remote attacker to bypass system …
Incomplete cleanup in CustomTabs in Google Chrome on on Android prior to 155.0.8059.39 allowed a remote attacker to bypass web …