CVE-2024-46430 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Tenda W18E V16.01.0.8(1625) is vulnerable to Incorrect Access Control. Unauthorized password change via the web management portal allows an unauthenticated remo…
Medium CVSS: 6.5

CVE-2024-46430

Tenda W18E V16.01.0.8(1625) is vulnerable to Incorrect Access Control. Unauthorized password change via the web management portal allows an unauthenticated remote attacker to change the administrator password by sending a specially crafted HTTP POST request to the setLoginPassword function, bypassing the authentication mechanism.
Vendor
Tenda
Product
W18e Firmware
CWE
CWE-284
Yayın Tarihi
2025-02-10 19:15:38
Güncelleme
2025-03-25 18:12:41
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar