CVE-2024-54090 Information
Feb 12, 2025
cve
Description
A vulnerability has been identified in APOGEE PXC Series (BACnet) (All versions) APOGEE PXC Series (P2 Ethernet) (All versions) TALON TC Series (BACnet) (All versions). Affected devices contain an out-of-bounds read in the memory dump function. This could allow an attacker with Medium (MED) or higher privileges to cause the device to enter an insecure cold start state.
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Reference
https://cert-portal.siemens.com/productcert/html/ssa-615116.html
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
NONE
Base Score
HIGH
Base Severity
5.9
Share on: