CVE-2024-45880
CVSS 3.1 Score 8 of 10 (high)
Details
Published Oct 8, 2024
Updated: Oct 10, 2024
CWE ID 78
Summary
CVE-2024-45880 is a command injection vulnerability affecting Motorola CX2L routers running version 1.0.2 and below. The issue lies in the SetStationSettings function, which directly invokes system functions to set parameters such as MAC addresses without proper input validation. This flaw enables malicious users to inject and execute arbitrary commands, potentially leading to unauthorized access or system compromise.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.