← voltar
CVE-2024-12013

CVE-2024-12013

CVSS 7.6 HIGHEPSS 0.3%CWE-1392
Vexday Risk Score
21Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 7.6EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
13 fev 2025Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
A CWE-1392 “Use of Default Credentials” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The device exposes an FTP server with default and easy-to-guess admin credentials. A remote attacker capable of interacting with the FTP server could gain access and perform changes over resources exposed by the service such as configuration files where password hashes are saved or where network settings are stored.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L
Produtos afetados
Zettler · 130.8005

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →