CVE-2024-44667

Shenzhen Haichangxing Technology Co., Ltd HCX H822 4G LTE Router M7628NNxISPxUIv2_v1.0.1557.15.35_P0 is vulnerable to Incorrect Access Control. Unauthenticated factory mode reset and command injection leads to information exposure and root shell access.
Configurations

No configuration.

History

29 Oct 2024, 16:35

Type Values Removed Values Added
Summary
  • (es) Shenzhen Haichangxing Technology Co., Ltd HCX H822 4G LTE Router M7628NNxISPxUIv2_v1.0.1557.15.35_P0 es vulnerable a un control de acceso incorrecto. El restablecimiento del modo de fábrica sin autenticación y la inyección de comandos conducen a la exposición de la información y al acceso al shell raíz.
CWE CWE-284 CWE-863

10 Sep 2024, 20:35

Type Values Removed Values Added
CWE CWE-284
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.0

10 Sep 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-10 17:15

Updated : 2024-10-29 16:35


NVD link : CVE-2024-44667

Mitre link : CVE-2024-44667

CVE.ORG link : CVE-2024-44667


JSON object : View

Products Affected

No product.

CWE
CWE-863

Incorrect Authorization