# CVE-2024-32011

## Summary

- **CVE ID:** CVE-2024-32011
- **Severity:** HIGH
- **CVSS Score:** 8.8 (CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N)
- **CWE:** CWE-829
- **Published:** Nov 11, 2025
- **Last Modified:** Mar 13, 2026

## Description

A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application is vulnerable to run arbitrary commands via the user interface. This user interface can be used via the network and allows the execution of commands as administrative application user.

## Affected Products

- Siemens — Spectrum Power 4 (0)

## References

- [CNA](https://cert-portal.siemens.com/productcert/html/ssa-339694.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.39%
- **EPSS Percentile:** 32.4

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._