CVE-2024-8419: Ifm Electronic GmbH Ifm Smart PLC AC402S
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
The endpoint hosts a script that allows an unauthorized remote attacker to put the system in a fail-safe state over the network due to missing authentication.
Affected products
- Ifm Electronic GmbH Ifm Smart PLC AC402S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
- Ifm Electronic GmbH Ifm Smart PLC AC422S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
- Ifm Electronic GmbH Ifm Smart PLC AC424S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
- Ifm Electronic GmbH Ifm Smart PLC AC432S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
- Ifm Electronic GmbH Ifm Smart PLC AC434S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
Published 2025-06-30. Last modified 2026-06-17.