Attacker Value
Unknown
0
CVE-2024-33687
0
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2024-33687
(Last updated June 27, 2024) ▾
MITRE ATT&CK
Log in to add MITRE ATT&CK tag
Add MITRE ATT&CK tactics and techniques that apply to this CVE.
MITRE ATT&CK
Select the MITRE ATT&CK Tactics that apply to this CVE
Collection
Select any Techniques used:
Command and Control
Select any Techniques used:
Credential Access
Select any Techniques used:
Defense Evasion
Select any Techniques used:
Discovery
Select any Techniques used:
Execution
Select any Techniques used:
Exfiltration
Select any Techniques used:
Impact
Select any Techniques used:
Initial Access
Select any Techniques used:
Lateral Movement
Select any Techniques used:
Persistence
Select any Techniques used:
Privilege Escalation
Select any Techniques used:
Topic Tags
Select the tags that apply to this CVE (Assessment added tags are disabled and cannot be removed)
What makes this of high-value to an attacker?
What makes this of low-value to an attacker?
Description
Insufficient verification of data authenticity issue exists in NJ Series CPU Unit all versions and NX Series CPU Unit all versions. If a user program in the affected product is altered, the product may not be able to detect the alteration.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
Data provided by the National Vulnerability Database (NVD)
Base Score:
7.5 High
Impact Score:
3.6
Exploitability Score:
3.9
Attack Vector (AV):
Network
Attack Complexity (AC):
Low
Privileges Required (PR):
None
User Interaction (UI):
None
Scope (S):
Unchanged
Confidentiality (C):
None
Integrity (I):
High
Availability (A):
None
General Information
Offensive Application
Unknown
Utility Class
Unknown
Ports
Unknown
OS
Unknown
Vulnerable Versions
NJ Series CPU Unit all versions
NX Series CPU Unit all versions
Prerequisites
Unknown
Discovered By
Unknown
PoC Author
Unknown
Metasploit Module
Unknown
Reporter
Unknown
Vendors
Products
- nj-pa3001 firmware,
- nj-pd3001 firmware,
- nj101-1000 firmware,
- nj101-1020 firmware,
- nj101-9000 firmware,
- nj101-9020 firmware,
- nj301-1100 firmware,
- nj301-1200 firmware,
- nj501-1300 firmware,
- nj501-1320 firmware,
- nj501-1340 firmware,
- nj501-140 firmware,
- nj501-1400 firmware,
- nj501-1420 firmware,
- nj501-1500 firmware,
- nj501-1520 firmware,
- nj501-4300 firmware,
- nj501-4310 firmware,
- nj501-4320 firmware,
- nj501-4400 firmware,
- nj501-4500 firmware,
- nj501-5300 firmware,
- nj501-5300-1 firmware,
- nj501-r300 firmware,
- nj501-r320 firmware,
- nj501-r400 firmware,
- nj501-r420 firmware,
- nj501-r500 firmware,
- nj501-r520 firmware,
- nx102-1000 firmware,
- nx102-1020 firmware,
- nx102-1100 firmware,
- nx102-1120 firmware,
- nx102-1200 firmware,
- nx102-1220 firmware,
- nx102-9000 firmware,
- nx102-9020 firmware,
- nx1p2-1040dt firmware,
- nx1p2-1040dt1 firmware,
- nx1p2-1140dt firmware,
- nx1p2-1140dt1 firmware,
- nx1p2-9024dt firmware,
- nx1p2-9024dt1 firmware,
- nx1w-adb21 firmware,
- nx1w-cif01 firmware,
- nx1w-cif11 firmware,
- nx1w-cif12 firmware,
- nx1w-dab21v firmware,
- nx1w-mab221 firmware,
- nx701-1600 firmware,
- nx701-1620 firmware,
- nx701-1700 firmware,
- nx701-1720 firmware,
- nx701-z600 firmware,
- nx701-z700 firmware
References
Additional Info
Authenticated
Unknown
Exploitable
Unknown
Reliability
Unknown
Stability
Unknown
Available Mitigations
Unknown
Shelf Life
Unknown
Userbase/Installbase
Unknown
Patch Effectiveness
Unknown
Rapid7
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: