CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2024-11322: CyberPower PowerPanel Business Unauthenticated Restart DoS

7.5 CVSS

Description

A denial-of-service vulnerability exists in CyberPower PowerPanel Business (PPB) 4.11.0.
An unauthenticated remote attacker can restart the ppbd.exe process via the PowerPanel Business Service Watchdog service listening on TCP port 2003. The attacker can repeatedly restart ppbd.exe to render it unavailable.

Classification

CVE ID: CVE-2024-11322

CVSS Base Severity: HIGH

CVSS Base Score: 7.5

Affected Products

Vendor: C4.yberPower

Product: PowerPanel Business

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.04% (probability of being exploited)

EPSS Percentile: 11.5% (scored less or equal to compared to others)

EPSS Date: 2025-02-13 (when was this score calculated)

References

https://www.tenable.com/security/research/tra-2025-01

Timeline