CVE-2024-33897
06.08.2024, 14:16
A compromised HMS Networks Cosy+ device could be used to request a Certificate Signing Request from Talk2m for another device, resulting in an availability issue. The issue was patched on the Talk2m production server on April 18, 2024.
Vendor | Product | Version |
---|---|---|
hms-networks | ewon_cosy\+_firmware | 21.0s0 ≤ 𝑥 < 21.2s10 |
hms-networks | ewon_cosy\+_firmware | 22.0s0 ≤ 𝑥 < 22.1s3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References