CVE-2024-4225 - CVE House
Back to Database
Status published High CVE-2024-4225

NGDIN_ST v2.0D.0062 - Multiple Vulnerabilities

Vulnerability Description

Multiple security vulnerabilities has been discovered in web interface of NetGuardian DIN Remote Telemetry Unit (RTU), by DPS Telecom. Attackers can exploit those security vulnerabilities to perform critical actions such as escalate user's privilege, steal user's credential, Cross Site Scripting (XSS) and Cross-Site Request Forgery (CSRF).

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-4225

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Tan Inn Fung
  • Goh Jing Loon

Affected Vendor

DPS Telecom

View all reports →

Affected Software

NetGuardian DIN Remote Telemetry Unit (RTU)
Vulnerable Versions:
NGDIN_ST App v2.0D.0062

Timeline

Official Publish: April 30th, 2024
Last Modified: August 9th, 2024
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L

Weaknesses (CWE)