CVE-2024-11980
Severity CVSS v4.0:
Pending analysis
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
29/11/2024
Last modified:
29/11/2024
Description
Certain modes of routers from Billion Electric have a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly access the specific functionality to obtain partial device information, modify the WiFi SSID, and restart the device.
Impact
Base Score 3.x
8.60
Severity 3.x
HIGH



