{"dataType":"CVE_RECORD","dataVersion":"5.1","cveMetadata":{"cveId":"CVE-2024-9787","assignerOrgId":"1af790b2-7ee1-4545-860a-a788eba489b5","state":"PUBLISHED","assignerShortName":"VulDB","dateReserved":"2024-10-10T06:37:16.551Z","datePublished":"2024-10-10T13:31:03.961Z","dateUpdated":"2024-10-11T16:56:57.432Z"},"containers":{"cna":{"providerMetadata":{"orgId":"1af790b2-7ee1-4545-860a-a788eba489b5","shortName":"VulDB","dateUpdated":"2024-10-10T13:31:03.961Z"},"title":"Contemporary Control System BASrouter BACnet BASRT-B UDP Packet denial of service","problemTypes":[{"descriptions":[{"type":"CWE","cweId":"CWE-404","lang":"en","description":"Denial of Service"}]}],"affected":[{"vendor":"Contemporary Control System","product":"BASrouter BACnet BASRT-B","versions":[{"version":"2.7.2","status":"affected"}],"modules":["UDP Packet Handler"]}],"descriptions":[{"lang":"en","value":"A vulnerability, which was classified as problematic, was found in Contemporary Control System BASrouter BACnet BASRT-B 2.7.2. This affects an unknown part of the component UDP Packet Handler. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way."},{"lang":"de","value":"Es wurde eine problematische Schwachstelle in Contemporary Control System BASrouter BACnet BASRT-B 2.7.2 gefunden. Betroffen hiervon ist ein unbekannter Ablauf der Komponente UDP Packet Handler. Dank der Manipulation mit unbekannten Daten kann eine denial of service-Schwachstelle ausgenutzt werden. Umgesetzt werden kann der Angriff über das Netzwerk. Der Exploit steht zur öffentlichen Verfügung."}],"metrics":[{"cvssV4_0":{"version":"4.0","baseScore":6.9,"vectorString":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N","baseSeverity":"MEDIUM"}},{"cvssV3_1":{"version":"3.1","baseScore":5.3,"vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","baseSeverity":"MEDIUM"}},{"cvssV3_0":{"version":"3.0","baseScore":5.3,"vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","baseSeverity":"MEDIUM"}},{"cvssV2_0":{"version":"2.0","baseScore":5,"vectorString":"AV:N/AC:L/Au:N/C:N/I:N/A:P"}}],"timeline":[{"time":"2024-10-10T00:00:00.000Z","lang":"en","value":"Advisory disclosed"},{"time":"2024-10-10T02:00:00.000Z","lang":"en","value":"VulDB entry created"},{"time":"2024-10-10T08:43:02.000Z","lang":"en","value":"VulDB entry last update"}],"credits":[{"lang":"en","value":"isZzzzz (VulDB User)","type":"reporter"}],"references":[{"url":"https://vuldb.com/?id.279939","name":"VDB-279939 | Contemporary Control System BASrouter BACnet BASRT-B UDP Packet denial of service","tags":["vdb-entry"]},{"url":"https://vuldb.com/?ctiid.279939","name":"VDB-279939 | CTI Indicators (IOB, IOC, TTP)","tags":["signature","permissions-required"]},{"url":"https://vuldb.com/?submit.414499","name":"Submit #414499 | Contemporary Control System, Inc. BASRT-B Firmware Revision: 2.7.2 Denial of Service","tags":["third-party-advisory"]},{"url":"https://github.com/isZzzz/BASRT-B_BriefDoS_Document/blob/main/report.md","tags":["broken-link","exploit"]}]},"adp":[{"affected":[{"vendor":"contemporary_control_system","product":"basrouter_bacnet_basrt-b","cpes":["cpe:2.3:h:contemporary_control_system:basrouter_bacnet_basrt-b:2.7.2:*:*:*:*:*:*:*"],"defaultStatus":"unknown","versions":[{"version":"2.7.2","status":"affected"}]}],"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2024-10-11T16:54:51.673303Z","id":"CVE-2024-9787","options":[{"Exploitation":"none"},{"Automatable":"yes"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2024-10-11T16:56:57.432Z"}}]}}