9.8
CVE-2023-24049
- EPSS 0.12%
- Veröffentlicht 04.12.2023 23:15:23
- Zuletzt bearbeitet 29.05.2025 15:15:24
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An issue was discovered on Connectize AC21000 G6 641.139.1.1256 allows attackers to gain escalated privileges on the device via poor credential management.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Connectize ≫ Ac21000 G6 Firmware Version641.139.1.1256
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.12% | 0.312 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-1393 Use of Default Password
The product uses default passwords for potentially critical functionality.
CWE-521 Weak Password Requirements
The product does not require that users should have strong passwords, which makes it easier for attackers to compromise user accounts.