CVE-2024-22811

An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the Hostmot2 configuration cookie in the device memory.
Configurations

No configuration.

History

13 Mar 2025, 16:15

Type Values Removed Values Added
CWE CWE-284

21 Nov 2024, 08:56

Type Values Removed Values Added
References () https://gist.github.com/VcuCyber/51075894d1728db07fc2df286c003df9 - () https://gist.github.com/VcuCyber/51075894d1728db07fc2df286c003df9 -

25 Oct 2024, 20:35

Type Values Removed Values Added
CWE CWE-284

03 Jul 2024, 01:47

Type Values Removed Values Added
CWE CWE-284
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.2
Summary
  • (es) Un problema en Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 permite a los atacantes provocar una denegación de servicio (DoS) al interrumpir la comunicación entre el controlador PathPilot y el enrutador CNC sobrescribiendo la cookie de configuración Hostmot2 en la memoria del dispositivo.

22 Apr 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-22 12:15

Updated : 2025-03-13 16:15


NVD link : CVE-2024-22811

Mitre link : CVE-2024-22811

CVE.ORG link : CVE-2024-22811


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control