CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.4. See the original NVD description below for full technical details.
CVE
CVE-2024-48849
Severity
CRITICAL
CVSS
9.4
EPSS
0.90%
Original NVD Description
Missing Origin Validation in WebSockets vulnerability in FLXEON. Session management was not sufficient to prevent unauthorized HTTPS requests. This issue affects FLXEON: through <= 9.3.4.