Home
MEDIUM: 5.3 CVSS:3.1/AC:L/AV:N/A:N/C:L/I:N/PR:N/S:U/UI:N
Description
Due to a firewall misconfiguration, Kerlink devices running KerOS prior to 5.12 incorrectly accept specially crafted UDP packets. This allows an attacker to bypass the firewall and access UDP-based services that would otherwise be protected.
References
www.bdosecurity.de/en-gb/advisories/cve-2024-32388
keros.docs.kerlink.com/security/security_advisories_kerOS5