CVE-2024-41161
08.08.2024, 18:15
Use of hard-coded credentials vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to bypass authentication using hard-coded administrator credentials. These accounts cannot be disabled.Enginsight
Vendor | Product | Version |
---|---|---|
vonets | var1200-h_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | var1200-l_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | var600-h_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vap11ac_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vap11g-500s_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vbg1200_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vap11s-5g_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vap11s_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | var11n-300_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vap11g-300_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vap11n-300_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vap11g_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vap11g-500_firmware | 𝑥 ≤ 3.3.23.6.9 |
vonets | vga-1000_firmware | 𝑥 ≤ 3.3.23.6.9 |
𝑥
= Vulnerable software versions