CVE-2024-28010

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Mar 28, 2024
Updated: Jan 14, 2025
CWE ID 259

Summary

CVE-2024-28010: NEC Corporation's Aterm models WG1800HP4, WG1200HS3, WG1900HP2, and others contain a hard-coded password vulnerability. An attacker can exploit this issue to gain unauthorized access and execute arbitrary OS commands over the internet. This affects various models, including WF1200HP2, WG1800HP, WF1200HP, WG600HP, and many more. The vulnerability is significant as it enables remote command injection, posing a serious threat to network security. Users are advised to update their devices as soon as patches become available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share