Description
CWE-400: An Uncontrolled Resource Consumption vulnerability exists that could cause the device to become
unresponsive resulting in communication loss when a large amount of IGMP packets is present in the network.
Published: 2024-11-13
Score: 8.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-49921 CWE-400: An Uncontrolled Resource Consumption vulnerability exists that could cause the device to become unresponsive resulting in communication loss when a large amount of IGMP packets is present in the network.
History

Tue, 19 Nov 2024 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Schneider-electric powerlogic Pm5320 Firmware
Schneider-electric powerlogic Pm5340 Firmware
Schneider-electric powerlogic Pm5341 Firmware
CPEs cpe:2.3:h:schneider-electric:powerlogic_pm5320:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:powerlogic_pm5340:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:powerlogic_pm5341:-:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:powerlogic_pm5320_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:powerlogic_pm5340_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:schneider-electric:powerlogic_pm5341_firmware:*:*:*:*:*:*:*:*
Vendors & Products Schneider-electric powerlogic Pm5320 Firmware
Schneider-electric powerlogic Pm5340 Firmware
Schneider-electric powerlogic Pm5341 Firmware

Wed, 13 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Schneider-electric
Schneider-electric powerlogic Pm5320
Schneider-electric powerlogic Pm5340
Schneider-electric powerlogic Pm5341
CPEs cpe:2.3:h:schneider-electric:powerlogic_pm5320:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:powerlogic_pm5340:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:powerlogic_pm5341:*:*:*:*:*:*:*:*
Vendors & Products Schneider-electric
Schneider-electric powerlogic Pm5320
Schneider-electric powerlogic Pm5340
Schneider-electric powerlogic Pm5341
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 13 Nov 2024 04:45:00 +0000

Type Values Removed Values Added
Description CWE-400: An Uncontrolled Resource Consumption vulnerability exists that could cause the device to become unresponsive resulting in communication loss when a large amount of IGMP packets is present in the network.
Weaknesses CWE-400
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Schneider-electric Powerlogic Pm5320 Powerlogic Pm5320 Firmware Powerlogic Pm5340 Powerlogic Pm5340 Firmware Powerlogic Pm5341 Powerlogic Pm5341 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2024-11-13T14:43:17.912Z

Reserved: 2024-10-01T12:08:25.066Z

Link: CVE-2024-9409

cve-icon Vulnrichment

Updated: 2024-11-13T14:43:06.004Z

cve-icon NVD

Status : Analyzed

Published: 2024-11-13T05:15:27.610

Modified: 2024-11-19T15:59:21.690

Link: CVE-2024-9409

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses