CVE-2024-48784
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Oct 11, 2024
Updated: Oct 15, 2024
CWE ID 863
Summary
CVE-2024-48784 is a newly identified access control vulnerability affecting SAMPMAX's com.sampmax.homemax version 2.1.2.7. This issue permits remote attackers to bypass security restrictions during the firmware update process, granting unauthorized access to sensitive information. Successful exploitation could lead to confidential data exposure, posing a significant risk to system security. It is crucial for users to apply the necessary patches as soon as they become available to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.