CVE-2024-58277

HIGH

R Radio Network FM Transmitter 1.07 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2024-58277. PoCs published by LiquidWorm.

AI-analyzed exploit summary The exploit demonstrates an improper access control vulnerability in R Radio Network FM Transmitter 1.07, allowing unauthenticated disclosure of the admin password via direct access to the system.cgi endpoint.

Description

R Radio Network FM Transmitter 1.07 allows unauthenticated attackers to access the admin user's password through the system.cgi endpoint, enabling authentication bypass and FM station setup access.

Exploits (1)

exploitdb WORKING POC
by LiquidWorm · textremotehardware
https://www.exploit-db.com/exploits/51855

The exploit demonstrates an improper access control vulnerability in R Radio Network FM Transmitter 1.07, allowing unauthenticated disclosure of the admin password via direct access to the system.cgi endpoint.

Classification
Working Poc 100%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: R Radio Network FM Transmitter 1.07
No auth needed
Prerequisites: Network access to the target device
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Third Party Advisory exploit
https://www.exploit-db.com/exploits/51855

Scores

CVSS v4 8.7
EPSS 0.0040
EPSS Percentile 32.7%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-312
Status published
Products (1)
R Radio Network/Radio Network FM Transmitter 1.07 - 1.09
Published Dec 04, 2025
Tracked Since Feb 18, 2026