CVE-2024-8310

OPW Fuel Management Systems SiteSentinel Missing Authentication for Critical Function

Description

OPW Fuel Management Systems SiteSentinel could allow an attacker to bypass authentication to the server and obtain full admin privileges.

Remediation

Solution:

  • OPW Fuel Management Systems' parent company, Dover Fueling Systems (DFS), recommends users install all versions of the product behind a firewall as primary protection. DFS recommends user running versions prior to V17Q.2.1 upgrade to V17Q.2.1. Users with products that were distributed with versions newer than V17Q.2.1 should contact DFS using the link below to confirm that their build has the required fixes. The software is available to authorized service providers for DFS products. Users should contact DFS https://www.doverfuelingsolutions.com/contact-us service providers to have the software on their system upgraded or changed.

Category

9.8
CVSS
Severity: Critical
CVSS 3.1 •
EPSS 0.17%
Affected: OPW Fuel Managements Systems SiteSentinel
Published at:
Updated at:

References

Frequently Asked Questions

What is the severity of CVE-2024-8310?
CVE-2024-8310 has been scored as a critical severity vulnerability.
How to fix CVE-2024-8310?
To fix CVE-2024-8310: OPW Fuel Management Systems' parent company, Dover Fueling Systems (DFS), recommends users install all versions of the product behind a firewall as primary protection. DFS recommends user running versions prior to V17Q.2.1 upgrade to V17Q.2.1. Users with products that were distributed with versions newer than V17Q.2.1 should contact DFS using the link below to confirm that their build has the required fixes. The software is available to authorized service providers for DFS products. Users should contact DFS https://www.doverfuelingsolutions.com/contact-us service providers to have the software on their system upgraded or changed.
Is CVE-2024-8310 being actively exploited in the wild?
As for now, there are no information to confirm that CVE-2024-8310 is being actively exploited. According to its EPSS score, there is a ~0% probability that this vulnerability will be exploited by malicious actors in the next 30 days.
What software or system is affected by CVE-2024-8310?
CVE-2024-8310 affects OPW Fuel Managements Systems SiteSentinel.
This platform uses data from the NIST NVD, MITRE CVE, MITRE CWE, First.org and CISA KEV but is not endorsed or certified by these entities. CVE is a registred trademark of the MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. CWE is a registred trademark of the MITRE Corporation and the authoritative source of CWE content is MITRE's CWE web site.
© 2025 Under My Watch. All Rights Reserved.