Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Alerts

Flaws in Cinterion Cellular Modems

May 10, 2024
Reading Time: 3 mins read
in Alerts
Flaws in Cinterion Cellular Modems

Cybersecurity researchers have uncovered multiple severe vulnerabilities in Cinterion cellular modems, posing significant risks to various industries. Initially developed by Gemalto and later acquired by Telit from Thales, these modems are foundational to industrial, healthcare, automotive, financial, and telecommunications sectors. The most critical flaw, CVE-2023-47610, is a heap overflow vulnerability that allows remote attackers to execute arbitrary code via specially crafted SMS messages. Other vulnerabilities include improper privilege management, exposure of sensitive information, and relative path traversal, each posing distinct risks ranging from unauthorized data access to privilege escalation.

The findings were presented at OffensiveCon in Berlin on May 11, 2024, highlighting the potential for these flaws to be exploited without physical access or authentication. Researchers Sergey Anufrienko and Alexander Kozlov, credited with discovering these vulnerabilities, emphasized the complexity of identifying all affected products due to the modems’ integration within other solutions. Kaspersky ICS CERT formally revealed the flaws in a series of advisories published on November 8, 2023, underscoring the urgency for affected organizations to take preventive measures.

To mitigate these risks, organizations are advised to disable non-essential SMS messaging capabilities, use private Access Point Names (APNs), control physical access to devices, and conduct regular security audits and updates. These steps are crucial in protecting against potential exploitation of these vulnerabilities, which could lead to significant disruptions and data breaches across critical sectors. The Hacker News has reached out to Telit for further information, and updates will be provided as they become available.

Given the severity of these vulnerabilities, it is imperative for businesses and organizations relying on Cinterion cellular modems to act swiftly. Enhancing security protocols and maintaining vigilance against potential threats can help mitigate the impact of these critical flaws. The discovery serves as a stark reminder of the evolving nature of cyber threats and the need for robust cybersecurity measures in safeguarding essential communication networks and IoT devices.

Reference:

  • Severe Vulnerabilities in Cinterion Modems Pose Major Risks to Critical Industries

Tags: CinterionCyber AlertCyber Alerts 2024Cyber RiskCyber threatGemaltoMay 2024Modems
ADVERTISEMENT

Related Posts

Glassworm Malware Strikes Again In VS Code

Shadypanda Extensions Hit Millions Users

December 2, 2025
Glassworm Malware Strikes Again In VS Code

Smarttube Breach Pushes Malicious Update

December 2, 2025
Glassworm Malware Strikes Again In VS Code

Glassworm Malware Strikes Again In VS Code

December 2, 2025
Albiriox Malware Hits Hundreds Of Apps

Google Meet Page Used To Deliver Malware

December 1, 2025
Tomiris Shifts To Public Service C2

Tomiris Shifts To Public Service C2

December 1, 2025
Albiriox Malware Hits Hundreds Of Apps

Albiriox Malware Hits Hundreds Of Apps

December 1, 2025

Latest Alerts

Shadypanda Extensions Hit Millions Users

Smarttube Breach Pushes Malicious Update

Glassworm Malware Strikes Again In VS Code

Google Meet Page Used To Deliver Malware

Tomiris Shifts To Public Service C2

Albiriox Malware Hits Hundreds Of Apps

Subscribe to our newsletter

    Latest Incidents

    French Soccer Federation Suffers Cyberattack

    120,000 Cameras Hacked In South Korea

    Hackers Claim Mercedes Benz USA Breach

    Ecommerce Breach Exposes 34 Million

    Ransomware Hits Golf Manor Network

    Yearn Finance Hit By 9M Token Exploit

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial