CVE-2024-46433
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Feb 10, 2025
CWE ID 798
Summary
CVE-2024-46433 is a newly identified vulnerability affecting the Tenda W18E V16.01.0.8(1625) firmware. This issue enables unauthenticated attackers to gain administrative access to the web management portal by exploiting the presence of a default rzadmin account with accompanying password. This vulnerability poses a significant risk as it allows attackers to take control of the router's configuration, potentially leading to further network intrusion and data breaches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share