Incorrect access control in the component /iclock/Settings?restartNCS=1 of NovaCHRON Zeitsysteme GmbH & Co. KG Smart Time Plus v8.x to v8.6 allows attackers to arbitrarily restart the NCServiceManger via a crafted GET request.
CVE ID: CVE-2024-53542
Vendor: n/a
Product: n/a
EPSS Score: 0.04% (probability of being exploited)
EPSS Percentile: 7.5% (scored less or equal to compared to others)
EPSS Date: 2025-03-25 (when was this score calculated)