5.4
CVE-2024-28339
- EPSS 0.09%
- Veröffentlicht 12.03.2024 17:15:59
- Zuletzt bearbeitet 27.05.2025 14:23:49
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An information leak in the debuginfo.htm component of Netgear CBR40 2.5.0.28, Netgear CBK40 2.5.0.28, and Netgear CBK43 2.5.0.28 allows attackers to obtain sensitive information without any authentication required.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netgear ≫ Cbk40 Firmware Version2.5.0.28
Netgear ≫ Cbk43 Firmware Version2.5.0.28
Netgear ≫ Cbr40 Firmware Version2.5.0.28
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.252 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 5.4 | 2.8 | 2.5 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.