CVE-2024-2425
CVE-2024-2425 is a denial-of-service vulnerability affecting Rockwell Automation PowerFlex® 527 drives. This vulnerability stems from improper input validation, leading to web server crashes. Exploitation requires a manual restart of the device for recovery.
The moderate CVSS score of 7.5 is somewhat misleading. While the SOCRadar Vulnerability Risk Score (SVRS) of 30 suggests a lower immediate threat compared to actively exploited vulnerabilities, the "In The Wild" tag indicates that the exploit is known and potentially circulating. Successful exploitation results in a service disruption, impacting operational continuity. Immediate patching or mitigation is advisable despite the relatively low SVRS, given the potential for escalated impact in specific industrial environments. The significance lies in the potential for process interruption and the need for manual intervention. Organizations using affected PowerFlex® 527 drives should prioritize assessing and addressing this security flaw.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.