CVE-2024-12013

CVSS 3.1 Score 7.6 of 10 (high)

Details

Published Feb 13, 2025
CWE ID 1392

Summary

CVE-2024-130805: A significant vulnerability, CVE-2024-12013, affects the TCP/IP Gateway with firmware version 12h. This issue involves the use of default and easily-guessed admin credentials for the device's FTP server (CWE-1392). An unauthorized attacker can exploit this vulnerability by gaining access to the FTP server, potentially leading to modifications of critical configuration files, which may contain password hashes or network settings.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share