CVE-2024-46436

CVSS 3.1 Score 8.3 of 10 (high)

Details

Published Feb 10, 2025
CWE ID 798

Summary

CVE-2024-46436 is a newly disclosed vulnerability affecting Tenda W18E routers running version V16.01.0.8(1625). This issue involves hardcoded credentials that are publicly available, enabling unauthenticated attackers to remotely access the device with root privileges via the telnet service. This poses a significant risk, as attackers can take complete control of the router and potentially compromise sensitive information or launch further attacks on connected networks. Users are advised to update their routers to a secure version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share