{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-14T22:14:31.386","vulnerabilities":[{"cve":{"id":"CVE-2024-8779","sourceIdentifier":"twcert@cert.org.tw","published":"2024-09-16T06:15:12.063","lastModified":"2024-09-17T11:27:50.290","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"OMFLOW from The SYSCOM Group does not properly restrict access to the system settings modification functionality, allowing remote attackers with regular privileges to update system settings or create accounts with administrator privileges, thereby gaining control of the server."},{"lang":"es","value":"OMFLOW de The SYSCOM Group no restringe adecuadamente el acceso a la funcionalidad de modificación de la configuración del sistema, lo que permite a atacantes remotos con privilegios regulares actualizar la configuración del sistema o crear cuentas con privilegios de administrador, obteniendo así el control del servidor."}],"metrics":{"cvssMetricV31":[{"source":"twcert@cert.org.tw","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9}]},"weaknesses":[{"source":"twcert@cert.org.tw","type":"Secondary","description":[{"lang":"en","value":"CWE-284"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-Other"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:syscomgo:omflow:*:*:*:*:*:*:*:*","versionStartIncluding":"1.1.6.0","versionEndExcluding":"1.2.1.3","matchCriteriaId":"F46C2FC2-89C8-4535-A426-AAE151888308"}]}]}],"references":[{"url":"https://www.twcert.org.tw/en/cp-139-8076-6ade0-2.html","source":"twcert@cert.org.tw","tags":["Third Party Advisory"]},{"url":"https://www.twcert.org.tw/tw/cp-132-8075-a0d06-1.html","source":"twcert@cert.org.tw","tags":["Third Party Advisory"]}]}}]}