Vulnerability Details CVE-2024-40091
Vilo 5 Mesh WiFi System <= 5.16.1.33 lacks authentication in the Boa webserver, which allows remote, unauthenticated attackers to retrieve logs with sensitive system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.5%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2024-40091
-
cpe:2.3:h:viloliving:vilo_5:-
-
cpe:2.3:o:viloliving:vilo_5_firmware:*