Vulnerability Details CVE-2024-40090
Vilo 5 Mesh WiFi System <= 5.16.1.33 is vulnerable to Information Disclosure. An information leak in the Boa webserver allows remote, unauthenticated attackers to leak memory addresses of uClibc and the stack via sending a GET request to the index page.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.2%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2024-40090
-
cpe:2.3:h:viloliving:vilo_5:-
-
cpe:2.3:o:viloliving:vilo_5_firmware:*