---
id: CVE-2024-1015
title: >-
  Remote command execution vulnerability in SE-elektronic GmbH E-DDC3.3
  affecting versions 03.07.03 and higher
summary: >-
  Remote command execution vulnerability in SE-elektronic GmbH E-DDC3.3
  affecting versions 03.07.03 and higher. An attacker could send different
  commands from the operating system to the system via the web configuration
  functionality of th…
severity: critical
cvss: 9.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-94
  - CWE-94
vendor: se-elektronic
product: e-ddc3.3_firmware
affected:
  - e-ddc3.3_firmware = 03.07.03
published: '2024-01-29'
updated: '2026-07-20'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2024-1015'
references:
  - url: 'https://www.hackplayers.com/2024/01/cve-2024-1014-and-cve-2024-1015.html'
    label: cve-coordination@incibe.es
  - url: >-
      https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-se-elektronic-gmbh-products
    label: cve-coordination@incibe.es
  - url: >-
      https://www.se-elektronic.com/.well-known/csaf/advisories/2026/se-sa-2026_001.json
    label: cve-coordination@incibe.es
  - url: 'https://www.se-elektronic.com/psirt-cybersecurity/'
    label: cve-coordination@incibe.es
  - url: 'https://www.hackplayers.com/2024/01/cve-2024-1014-and-cve-2024-1015.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-se-elektronic-gmbh-products
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.01751
epssPercentile: 0.76557
ingestedAt: '2026-07-20T14:40:26.147Z'
---

## Overview

Remote command execution vulnerability in SE-elektronic GmbH E-DDC3.3 affecting versions 03.07.03 and higher. An attacker could send different commands from the operating system to the system via the web configuration functionality of the device.

## Affected

- `e-ddc3.3_firmware = 03.07.03`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
