CVE-2024-46658

CVSS 3.1 Score 8 of 10 (high)

Details

Published Oct 3, 2024
Updated: Oct 7, 2024
CWE ID 78

Summary

CVE-2024-46658 is a newly discovered vulnerability affecting Syrotech's SY-GOPON-8OLT-L3 v1.6.0_240629 device. This issue allows authenticated attackers to inject commands into the system, potentially leading to unauthorized access, data theft, or other malicious activities. Attackers can exploit this vulnerability by sending specially crafted input to the affected device. Successful exploitation requires valid authentication credentials. Syrotech is encouraged to release a patch as soon as possible to mitigate this risk. Until then, it is recommended that affected organizations apply access controls and monitor their networks closely to prevent unauthorized access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share