CVE-2024-48457
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2024-48457 is a newly disclosed vulnerability affecting multiple Netis router models, including the NX10, NC65, NC63, NC21, and MW5360. The issue enables remote attackers to gain access to sensitive information through the endpoint /cgi-bin/skk_set.cgi and the binary /bin/scripts/start_wifi.sh. By exploiting this vulnerability, an attacker can obtain data that could be used for malicious purposes, such as unauthorized network access or identity theft. The specific impact of this vulnerability may vary depending on the router model and configuration, but it poses a significant security risk that should be addressed promptly through software updates provided by Netis.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.