CVE-2024-53938

An issue was discovered in Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware 1.0) devices. The TELNET service is enabled by default and exposed over the LAN. The root account is accessible without a password, allowing attackers to achieve full control over the router remotely without any authentication.
Configurations

No configuration.

History

03 Dec 2024, 19:15

Type Values Removed Values Added
CWE CWE-862
Summary
  • (es) Se descubrió un problema en los dispositivos Victure RX1800 WiFi 6 Router (software EN_V1.0.0_r12_110933, hardware 1.0). El servicio TELNET está habilitado de forma predeterminada y expuesto a través de la LAN. Se puede acceder a la cuenta root sin una contraseña, lo que permite a los atacantes lograr un control total sobre el enrutador de forma remota sin ninguna autenticación.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

02 Dec 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-02 22:15

Updated : 2024-12-03 19:15


NVD link : CVE-2024-53938

Mitre link : CVE-2024-53938

CVE.ORG link : CVE-2024-53938


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization