CVE-2024-12013

HIGH

130.8005 TCP/IP Gateway <12h - Info Disclosure

Title source: llm
STIX 2.1

Description

A CWE-1392 “Use of Default Credentials” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The device exposes an FTP server with default and easy-to-guess admin credentials. A remote attacker capable of interacting with the FTP server could gain access and perform changes over resources exposed by the service such as configuration files where password hashes are saved or where network settings are stored.

Scores

CVSS v3 7.6
EPSS 0.0042
EPSS Percentile 61.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-1392
Status published
Products (1)
Zettler/130.8005 12h
Published Feb 13, 2025
Tracked Since Feb 18, 2026