EnerSys AMPA versions 24.04 through 24.16, inclusive, are vulnerable to command injection leading to privileged remote shell access.
Metrics
Affected Vendors & Products
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 13 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 09 May 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | EnerSys AMPA versions 24.04 through 24.16, inclusive, are vulnerable to command injection leading to privileged remote shell access. | |
| Title | Command injection in EnerSys AMPA versions 24.04 through 24.16, inclusive | |
| Weaknesses | CWE-77 | |
| References |
|
Status: PUBLISHED
Assigner: Mandiant
Published: 2025-05-09T13:55:20.669Z
Updated: 2025-05-13T14:28:17.017Z
Reserved: 2024-12-10T19:01:14.752Z
Link: CVE-2024-12442
Updated: 2025-05-13T14:28:07.085Z
Status : Awaiting Analysis
Published: 2025-05-09T14:15:36.920
Modified: 2025-05-13T15:15:51.460
Link: CVE-2024-12442
No data.