CVE-2024-48457

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 6, 2025
Updated: Jan 7, 2025
CWE ID 125

Summary

CVE-2024-48457 is a newly disclosed vulnerability affecting multiple Netis router models, including the NX10, NC65, NC63, NC21, and MW5360. The issue enables remote attackers to gain access to sensitive information through the endpoint /cgi-bin/skk_set.cgi and the binary /bin/scripts/start_wifi.sh. By exploiting this vulnerability, an attacker can obtain data that could be used for malicious purposes, such as unauthorized network access or identity theft. The specific impact of this vulnerability may vary depending on the router model and configuration, but it poses a significant security risk that should be addressed promptly through software updates provided by Netis.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share