CVE-2024-46873

CVSS 3.0 Score 9.8 of 10 (critical)

Details

Published Dec 23, 2024
CWE ID 489

Summary

CVE-2024-46873 is a newly disclosed vulnerability affecting multiple SHARP routers. The issue lies in the presence of a hidden debug function, which is mistakenly left enabled. An attacker, without requiring any authentication, can exploit this vulnerability to execute arbitrary OS commands with root privileges. This poses a significant risk as an unauthorized user can gain full control over the affected device and potentially compromise the entire network.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share