Vulnerability Details CVE-2024-42001
An improper authentication vulnerability affecting Vonets
industrial wifi bridge relays and wifi bridge repeaters, software versions
3.3.23.6.9 and prior enables an unauthenticated remote attacker to
bypass authentication via a specially crafted direct request when
another user has an active session.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.1%
CVSS Severity
CVSS v3 Score 8.6
Products affected by CVE-2024-42001
-
cpe:2.3:h:vonets:vap11ac:-
-
cpe:2.3:h:vonets:vap11g-300:-
-
cpe:2.3:h:vonets:vap11g-500:-
-
cpe:2.3:h:vonets:vap11g-500s:-
-
cpe:2.3:h:vonets:vap11g:-
-
cpe:2.3:h:vonets:vap11n-300:-
-
cpe:2.3:h:vonets:vap11s-5g:-
-
cpe:2.3:h:vonets:vap11s:-
-
cpe:2.3:h:vonets:var11n-300:-
-
cpe:2.3:h:vonets:var1200-h:-
-
cpe:2.3:h:vonets:var1200-l:-
-
cpe:2.3:h:vonets:var600-h:-
-
cpe:2.3:h:vonets:vbg1200:-
-
cpe:2.3:h:vonets:vga-1000:-
-
cpe:2.3:o:vonets:vap11ac_firmware:-
-
cpe:2.3:o:vonets:vap11ac_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vap11g-300_firmware:-
-
cpe:2.3:o:vonets:vap11g-300_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vap11g-500_firmware:-
-
cpe:2.3:o:vonets:vap11g-500_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vap11g-500s_firmware:-
-
cpe:2.3:o:vonets:vap11g-500s_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vap11g_firmware:-
-
cpe:2.3:o:vonets:vap11g_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vap11n-300_firmware:-
-
cpe:2.3:o:vonets:vap11n-300_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vap11s-5g_firmware:-
-
cpe:2.3:o:vonets:vap11s-5g_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vap11s_firmware:-
-
cpe:2.3:o:vonets:vap11s_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:var11n-300_firmware:-
-
cpe:2.3:o:vonets:var11n-300_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:var1200-h_firmware:-
-
cpe:2.3:o:vonets:var1200-h_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:var1200-l_firmware:-
-
cpe:2.3:o:vonets:var1200-l_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:var600-h_firmware:-
-
cpe:2.3:o:vonets:var600-h_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vbg1200_firmware:-
-
cpe:2.3:o:vonets:vbg1200_firmware:3.3.23.6.9
-
cpe:2.3:o:vonets:vga-1000_firmware:-
-
cpe:2.3:o:vonets:vga-1000_firmware:3.3.23.6.9