RULE(RULE ID:337471)

Rule General Information
Release Date: 2023-04-12
Rule Name: Paradox Security Systems IPR512 Denial of Service Vulnerability (CVE-2023-24709)
Severity:
CVE ID:
Rule Protection Details
Description: An issue found in Paradox Security Systems IPR512 allows attackers to cause a denial of service via the login.html and login.xml parameters.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Windows, Linux, Others
Reference: http://packetstormsecurity.com/files/171783/Paradox-Security-Systems-IPR512-Denial-Of-Service.html
https://github.com/SlashXzerozero/Injection-vulnerability-in-Paradox-Security-Systems-IPR512
https://github.com/sunktitanic/Injection-vulnerability-in-Paradox-Security-Systems-IPR512
Solutions
Please contact the software vendor to update the software patch.