Vulnerability Summary: The SENTRON 7KT PAC1260 Data Manager is affected by multiple vulnerabilities. Affected Product and Versions: SENTRON 7KT PAC1260 Data Manager, all versions are affected. Remediation: Currently no fix is planned. Recommendations include replacing the device with the new SENTRON 7KT PAC1260 Data Manager and updating it to the latest available firmware version. Workarounds and Mitigations: Specific workarounds and mitigations are provided for CVE-2024-41795 and CVE-2024-41796, advising not to access links from untrusted sources while logged in on affected devices. Vulnerability Details: - CVE-2024-41788: Improper Neutralization of Special Elements used in an OS Command (OS Command Injection). - CVE-2024-41789: Improper Neutralization of Special Elements used in an OS Command (OS Command Injection). - CVE-2024-41790: Improper Neutralization of Special Elements used in an OS Command (OS Command Injection). - CVE-2024-41791: Missing Authentication for Critical Function. - CVE-2024-41792: Path Traversal. - CVE-2024-41793: Missing Authentication for Critical Function. - CVE-2024-41794: Use of Hard-coded Credentials. - CVE-2024-41795: Cross-Site Request Forgery (CSRF). - CVE-2024-41796: Unverified Password Change.