CVE-2024-36439
Severity CVSS v4.0:
Pending analysis
Type:
CWE-269
Improper Privilege Management
Publication date:
22/08/2024
Last modified:
23/08/2024
Description
Swissphone DiCal-RED 4009 devices allow a remote attacker to gain access to the administrative web interface via the device password's hash value, without knowing the actual device password.
Impact
Base Score 3.x
9.40
Severity 3.x
CRITICAL



