CVE-2024-57040
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Feb 26, 2025
Updated: Mar 4, 2025
CWE ID 798
Summary
CVE-2024-57040 affects the TL-WR845N(UN) v4 models with firmware versions 200909 and 190219. This vulnerability involves a hardcoded root account password, which can be obtained through brute force attacks. An attacker who exploits this weakness can gain unauthorized administrative access to the affected device, potentially leading to data theft, unauthorized network access, or other malicious activities. Users are advised to update their firmware as soon as patches become available to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- TL-WR845N