CVE-2024-54006

CVSS 3.1 Score 7.2 of 10 (high)

Details

Published Jan 7, 2025
CWE ID 77

Summary

CVE-2024-54006 refers to multiple command injection vulnerabilities residing in the web interface of the 501 Wireless Client Bridge. These flaws enable authenticated remote command execution, granting attackers the ability to execute arbitrary commands with privileged user access on the underlying operating system. Successfully exploiting these vulnerabilities necessitates administrative authentication credentials on the host system. This issue poses a significant risk to organizations utilizing the 501 Wireless Client Bridge, as an attacker can potentially gain full control of the affected system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share