TROYANOSYVIRUS
Back to CVEs

CVE-2024-47397

HIGH
7.5

Description

Weak authentication issue exists in AE1021 firmware versions 2.0.10 and earlier and AE1021PE firmware versions 2.0.10 and earlier. If this vulnerability is exploited, the authentication may be bypassed with an undocumented specific string.

CVE Details

CVSS v3.1 Score7.5
SeverityHIGH
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published12/18/2024
Last Modified12/18/2024
Sourcenvd
Honeypot Sightings0

Weaknesses (CWE)

CWE-1390

References

https://www.fxc.jp/news/20241213(vultures@jpcert.or.jp)

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.