nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-33626 CVE-2024-33626
MEDIUM
Record summary
CVE-2024-33626 has a selected CVSS score of 5.3 (medium).
Description
The LevelOne WBR-6012 router contains a vulnerability within its web application that allows unauthenticated disclosure of sensitive information, such as the WiFi WPS PIN, through a hidden page accessible by an HTTP request. Disclosure of this information could enable attackers to connect to the device's WiFi network.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Oct 30, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
WBR-6012Browse LevelOne / WBR-6012Default status: unknown | CVE List | R0.40e6 | affected |
References
3talosintelligence.com
https://talosintelligence.com/vulnerability_reports/TALOS-2024-1986 talosintelligence.com
https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-1986