Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-43425 | The affected product is vulnerable to unrestricted file uploads, which may allow an attacker to remotely execute code. |
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 17 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Elvaco
Elvaco cme3100 Firmware |
|
| CPEs | cpe:2.3:o:elvaco:cme3100_firmware:1.12.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Elvaco
Elvaco cme3100 Firmware |
|
| Metrics |
ssvc
|
Thu, 17 Oct 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The affected product is vulnerable to unrestricted file uploads, which may allow an attacker to remotely execute code. | |
| Title | Unrestricted Upload of File with Dangerous Type in Elvaco M-Bus Metering Gateway CMe3100 | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-10-17T17:51:38.915Z
Reserved: 2024-10-14T22:56:08.990Z
Link: CVE-2024-49398
Updated: 2024-10-17T16:57:56.658Z
Status : Deferred
Published: 2024-10-17T17:15:12.680
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-49398
No data.
OpenCVE Enrichment
No data.
EUVD