CVE-2024-11494

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 20, 2024
Updated: Nov 22, 2024
CWE ID 287

Summary

CVE-2024-11494 is an authentication vulnerability affecting the Zyxel P-6101C ADSL modem. The issue lies within the firmware version P-6101CSA6AP_20140331, where an unauthenticated attacker can exploit the weakness by employing a crafted HTTP HEAD method. Successful exploitation permits the attacker to gain unauthorized access to some device information. This vulnerability poses a significant risk, emphasizing the importance of promptly updating affected devices to mitigate potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share