CVE-2020-11926
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Nov 7, 2024
Updated: Nov 8, 2024
CWE ID 79
Summary
CVE-2020-11926 is a vulnerability affecting Luvion Grand Elite 3 Connect devices through February 2020. This issue allows unauthenticated clients to obtain the device's Wi-Fi credentials, including the SSID and WPA2 key, by making a request for a JavaScript file. Authentication to the device is possible with a valid username and password, which can now be easily obtained, posing a significant security risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.