Critical severity9.8NVD Advisory· Published Sep 10, 2024· Updated Jun 17, 2026
CVE-2024-6596
CVE-2024-6596
Description
An unauthenticated remote attacker can run malicious c# code included in curve files and execute commands in the users context.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- Range: 0
- cpe:2.3:a:endress:fieldcare_sfe500_package:*:*:*:*:*:*:*:*Range: <1.40.1
- cpe:2.3:o:endress:field_xpert_smt79_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:endress:field_xpert_smt77_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:endress:field_xpert_smt70_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:endress:field_xpert_smt50_firmware:-:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- cert.vde.com/en/advisories/VDE-2024-041nvdThird Party Advisory
News mentions
0No linked articles in our index yet.