CVE-2024-42001
Vonets WiFi Bridges Forced Browsing
An improper authentication vulnerability affecting Vonets
industrial wifi bridge relays and wifi bridge repeaters, software versions
3.3.23.6.9 and prior enables an unauthenticated remote attacker to
bypass authentication via a specially crafted direct request when
another user has an active session.
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N
Affected products
Vonets · VAP11ACVonets · VAP11GVonets · VAP11G-300Vonets · VAP11G-500Vonets · VAP11G-500SVonets · VAP11N-300Vonets · VAP11SVonets · VAP11S-5GVonets · VAR11N-300Vonets · VAR1200-HVonets · VAR1200-LVonets · VAR600-HVonets · VBG1200Vonets · VGA-1000Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →