CVE-2024-40750

Severity CVSS v4.0:
Pending analysis
Type:
CWE-312 Cleartext Storage of Sensitive Information
Publication date:
09/07/2024
Last modified:
30/06/2025

Description

Linksys Velop Pro 6E 1.0.8 MX6200_1.0.8.215731 and 7 1.0.10.215314 devices send cleartext Wi-Fi passwords over the public Internet during app-based installation.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linksys:mx6200_firmware:1.0.8.215731:*:*:*:*:*:*:*
cpe:2.3:h:linksys:mx6200:-:*:*:*:*:*:*:*
cpe:2.3:o:linksys:mbe7000_firmware:1.0.10.215314:*:*:*:*:*:*:*
cpe:2.3:h:linksys:mbe7000:-:*:*:*:*:*:*:*