CVE-2024-47397

HIGH

FXC Inc. AE1021 and AE1021PE <= 2.0.10 - Weak Authentication Bypass via Undocumented String

Title source: llm
STIX 2.1

Description

Weak authentication issue exists in AE1021 firmware versions 2.0.10 and earlier and AE1021PE firmware versions 2.0.10 and earlier. If this vulnerability is exploited, the authentication may be bypassed with an undocumented specific string.

References (2)

Core 2
Core References

Scores

CVSS v3 7.5
EPSS 0.0038
EPSS Percentile 29.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-1390
Status published
Products (2)
FXC Inc./AE1021 firmware versions 2.0.10 and earlier
FXC Inc./AE1021PE firmware versions 2.0.10 and earlier
Published Dec 18, 2024
Tracked Since Feb 18, 2026