Vulnerability Details CVE-2024-46603
An XML External Entity (XXE) vulnerability in Elspec Engineering G5 Digital Fault Recorder Firmware v1.2.1.12 allows attackers to cause a Denial of Service (DoS) via a crafted XML payload.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 36.0%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-46603
-
cpe:2.3:h:elspec-ltd:g5dfr:-
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:-
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.0.2.11
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.0.2.22
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.0.4.18
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.0.6.39
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.1.0.12
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.1.1.17
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.1.2.9
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.1.4.15
-
cpe:2.3:o:elspec-ltd:g5dfr_firmware:1.2.1.12