High severity7.5NVD Advisory· Published Mar 26, 2024· Updated Apr 15, 2026
CVE-2024-25136
CVE-2024-25136
Description
There is a function in AutomationDirect C-MORE EA9 HMI that allows an attacker to send a relative path in the URL without proper sanitizing of the content.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.