CVE-2024-36475
—CVSS 3.1
8.8 high
EPSS
<1%p48
Published
()
Modified
Description
FutureNet NXR series, VXR series and WXR series provided by Century Systems Co., Ltd. contain an active debug code vulnerability. If a user who knows how to use the debug function logs in to the product, the debug function may be used and an arbitrary OS command may be executed.
- Vendors
- centurysys
- Products
- futurenet nxr-1300 firmware, futurenet nxr-155\/c firmware, futurenet nxr-610x firmware, futurenet nxr-g050 firmware, futurenet nxr-g060 firmware, futurenet nxr-g100 firmware, futurenet nxr-g110 firmware, futurenet nxr-g120 firmware, futurenet nxr-g200 firmware, futurenet vxr-x64, futurenet vxr-x86, futurenet nxr-160\/lw firmware
- Weakness
- CWE-78, CWE-489
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.