CVE-2024-31409
6.5MEDIUMCertain MQTT wildcards are not blocked on the CyberPower PowerPanel system, which might result in an attacker obtaining data from throughout the system after gaining access to any device.
Veröffentlicht: 5/15/2024Aktualisiert: 8/7/2025
Beschreibung
Certain MQTT wildcards are not blocked on the CyberPower PowerPanel system, which might result in an attacker obtaining data from throughout the system after gaining access to any device.
KI-AnalyseKI-gestützt
Betroffene Produkte
cyberpowerpowerpanel
Referenzen
- https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01Third Party AdvisoryUS Government Resource
- https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloadsProduct
- https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01Third Party AdvisoryUS Government Resource
- https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloadsProduct