CVE-2024-50381

EUVD-2024-45182
A vulnerability exists in Snap One OVRC cloud where an attacker can impersonate a Hub device and send requests to claim and unclaim devices. The attacker only needs to provide the MAC address of the targeted device and can make a request to unclaim it from its original connection and make a request to claim it.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
UNKNOWN
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 44%
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
snaponeovrc-300-pro
𝑥
< 7.3
ADP