CVE-2024-23629

CRITICAL

Motorola MR2600 Firmware - Authentication Bypass via Web Component

Title source: llm
STIX 2.1

Description

An authentication bypass vulnerability exists in the web component of the Motorola MR2600. An attacker can exploit this vulnerability to access protected URLs and retrieve sensitive information.

References (1)

Core 1

Scores

CVSS v3 9.6
EPSS 0.0108
EPSS Percentile 60.8%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-287 CWE-863
Status published
Products (1)
motorola/mr2600_firmware
Published Jan 26, 2024
Tracked Since Feb 18, 2026