CVE-2024-52778

DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_hist.php.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CISA-ADPADP
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 76%
VendorProductVersion
dcnetworksdcme-720_firmware
𝑥
≤ 9.1.5.11
dcnetworksdcme-320-l_firmware
𝑥
≤ 9.3.5.26
dcnetworksdcme-320_firmware
𝑥
≤ 7.4.12.90
dcnetworksdcme-520_firmware
𝑥
≤ 9.25.5.11
𝑥
= Vulnerable software versions