CVE-2024-54984
Severity CVSS v4.0:
Pending analysis
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
19/12/2024
Last modified:
07/01/2025
Description
An issue in Quectel BG96 BG96MAR02A08M1G allows attackers to bypass authentication via a crafted NAS message. NOTE: this is disputed by the supplier.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL