CVE-2024-35106
CVSS 3.1 Score 4.6 of 10 (medium)
Details
Published Feb 7, 2025
Updated: Feb 11, 2025
CWE ID 120
Summary
CVE-2024-35106 is a newly discovered vulnerability affecting the NEXTU FLETA AX1500 WIFI6 v1.0.3. This issue involves a buffer overflow in the /boafrm/formIpQoS path. Attackers can exploit this vulnerability by sending a crafted POST request, leading to a Denial of Service (DoS) or potentially gaining arbitrary code execution. The risk posed by this vulnerability is significant as it can result in serious disruptions or unauthorized access to affected systems. Users are urged to update their firmware as soon as a patch becomes available.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share