CVE-2024-41692

CVSS

No CVSS.

T

his vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to presence of root terminal access on a serial interface without proper access control. An attacker with physical access could exploit this by accessing the root shell on the vulnerable system. Successful exploitation of this vulnerability could allow the attacker to execute arbitrary commands with root privileges on the targeted system.

Configurations

No configuration.

History

21 Nov 2024, 09:32

Type Values Removed Values Added
References
  • () https://cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&VLCODE=CIVN-2024-0225 -

01 Aug 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-26 13:15

Updated : 2024-11-21 09:32


NVD link : CVE-2024-41692

Mitre link : CVE-2024-41692

CVE.ORG link : CVE-2024-41692


JSON object : View

Products Affected

No product.

CWE
CWE-1191

On-Chip Debug and Test Interface With Improper Access Control