CVE-2024-8419: Ifm Electronic GmbH Ifm Smart PLC AC402S

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

The endpoint hosts a script that allows an unauthorized remote attacker to put the system in a fail-safe state over the network due to missing authentication.

Affected products

  • Ifm Electronic GmbH Ifm Smart PLC AC402S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
  • Ifm Electronic GmbH Ifm Smart PLC AC422S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
  • Ifm Electronic GmbH Ifm Smart PLC AC424S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
  • Ifm Electronic GmbH Ifm Smart PLC AC432S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only
  • Ifm Electronic GmbH Ifm Smart PLC AC434S: from 4.04, before 4.3.17 (fixed in 4.3.17); version 6.1.8 only

Published 2025-06-30. Last modified 2026-06-17.