Critical severity10.0NVD Advisory· Published Jun 11, 2024· Updated Jun 17, 2026
CVE-2024-2013
CVE-2024-2013
Description
An authentication bypass vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway component that if exploited allows attackers without any access to interact with the services and the post-authentication attack surface.
Affected products
12cpe:2.3:a:hitachienergy:foxman-un:r15a:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:hitachienergy:foxman-un:r15a:*:*:*:*:*:*:*
- cpe:2.3:a:hitachienergy:foxman-un:r15b:pc4:*:*:*:*:*:*
- cpe:2.3:a:hitachienergy:foxman-un:r16a:*:*:*:*:*:*:*
- cpe:2.3:a:hitachienergy:foxman-un:r16b:pc2:*:*:*:*:*:*
- (no CPE)
cpe:2.3:a:hitachienergy:unem:r15a:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:hitachienergy:unem:r15a:*:*:*:*:*:*:*
- cpe:2.3:a:hitachienergy:unem:r15b:pc4:*:*:*:*:*:*
- cpe:2.3:a:hitachienergy:unem:r15b:pc5:*:*:*:*:*:*
- cpe:2.3:a:hitachienergy:unem:r16b:*:*:*:*:*:*:*
- cpe:2.3:a:hitachienergy:unem:r16b:pc2:*:*:*:*:*:*
- Hitachi Energy/FOXMAN-UNv5Range: FOXMAN-UN R16B PC2
Patches
Vulnerability mechanics
References
1- publisher.hitachienergy.com/previewnvdVendor Advisory
News mentions
0No linked articles in our index yet.