CVE-2024-49705
CVE-2024-49705 exposes SoftCOM iKSORIS Internet Starter to client-side Denial of Service (DoS) attacks. An attacker can trigger this vulnerability by enticing a user to access a URL with a malformed 'd' parameter, or by attempting to change the platform language to an unsupported option, leading to persistent server errors tied to the user's session cookie. The SVRS score of 34 indicates a moderate risk, while not critical, necessitates monitoring for potential exploitation attempts. This vulnerability can disrupt user access until the session expires or cookies are manually cleared. SoftCOM has addressed this issue in version 79.0. While not immediately critical, organizations using affected versions of SoftCOM iKSORIS should prioritize patching to prevent potential service disruptions and maintain system stability.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.