CVE-2024-28010
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Mar 28, 2024
Updated: Jan 14, 2025
CWE ID 259
Summary
CVE-2024-28010: NEC Corporation's Aterm models WG1800HP4, WG1200HS3, WG1900HP2, and others contain a hard-coded password vulnerability. An attacker can exploit this issue to gain unauthorized access and execute arbitrary OS commands over the internet. This affects various models, including WF1200HP2, WG1800HP, WF1200HP, WG600HP, and many more. The vulnerability is significant as it enables remote command injection, posing a serious threat to network security. Users are advised to update their devices as soon as patches become available.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.