Vulnerability CVE-2024-1889


Published: 2024-02-26

Description:
Cross-Site Request Forgery vulnerability in SMA Cluster Controller, affecting version 01.05.01.R. This vulnerability could allow an attacker to send a malicious link to an authenticated user to perform actions with these user permissions on the affected device.

Type:

CWE-352

(Cross-Site Request Forgery (CSRF))

 References:
https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-sma-products

Copyright 2026, cxsecurity.com

 

Back to Top