#CVE-2024-4872
~Cisa~
Multiple critical vulnerabilities in Hitachi Energy MACH GWS products could allow remote code injection, file access, session hijacking, or unauthenticated access.
-
IOCs: CVE-2024-3980, CVE-2024-4872, CVE-2024-7940
-
...
Hitachi Energy MACH GWS Products Vulnerabilities
www.cisa.gov
May 13, 2025 at 6:09 PM
April 8, 2025 at 8:50 AM
April 7, 2025 at 10:16 AM
April 8, 2025 at 11:30 AM
April 4, 2025 at 8:52 AM
April 7, 2025 at 11:16 AM
April 3, 2025 at 1:00 PM
April 8, 2025 at 10:33 PM
ID: CVE-2024-4872
CVSS V3.1: CRITICAL
The product does not validate any query towards persistent data, resulting in a risk of injection attacks.
#security #infosec #cve-alert
nvd.nist.gov
August 27, 2024 at 1:15 PM