Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-23309


The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due to reliance on client IP addresses for authentication. Attackers could spoof an IP address to gain unauthorized access without needing a session token.


Published

2024-10-30T14:15:04.153

Last Modified

2024-11-21T08:57:28.620

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.0 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-291

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System level1 wbr-6012_firmware r0.40e6 Yes
Hardware level1 wbr-6012 - No

References