CVE-2024-9132
CVSS 3.1 Score 8.1 of 10 (high)
Details
Summary
CVE-2024-9132 represents a newly identified vulnerability in which an administrator can configure an insecure captive portal script. This issue poses a risk as it may allow unauthorized access to networks if the script is misconfigured. The exact nature of the vulnerability lies in the misconfiguration of the script, which if left unattended, could potentially enable unauthenticated users to bypass the captive portal and gain network access. Organizations are strongly advised to secure their captive portal scripts to mitigate this risk. This vulnerability underscores the importance of proper configuration management and the need for continuous monitoring and updating of network components.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.