This vulnerability is due to insufficient validation of user-supplied input for specific HTTP requests that are sent to an affected system. An attacker could exploit this vulnerability by sending a crafted HTTP request to the affected device. A successful exploit could allow the attacker to obtain limited sensitive information for services that are associated to the affected device.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-08-01T21:59:42.723Z
Reserved: 2023-11-08T15:08:07.661Z
Link: CVE-2024-20404
Updated: 2024-06-05T18:11:57.908Z
Status : Modified
Published: 2024-06-05T17:15:11.790
Modified: 2024-11-21T08:52:33.903
Link: CVE-2024-20404
No data.
OpenCVE Enrichment
No data.