← Back

CVE-2024-23309

nvd nist
Published: Oct 30, 2024Modified: Jun 17, 2026

JSON object

Loading...
8.1
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.2 / Impact: 5.9
Source: NVD

Description

The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due to reliance on client IP addresses for authentication. Attackers could spoof an IP address to gain unauthorized access without needing a session token.

Affected (1)

1 product
Wbr 6012 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version r0.40e6
Running on/withPlatform Versions
Level1
Wbr 6012
All versions

References (2)

Source: talos-cna@cisco.com
ExploitThird Party Advisory

Timeline

No history available yet.