216.73.216.133

CVE-2024-45259

· Published 24/10/2024 20:15 · Modified 28/10/2024 20:35

Labels: CVE-2024-45259 2024-10-24CVE-2024-45259CWE-326[email protected]

Essential information

Published
24/10/2024 20:15
Modified
28/10/2024 20:35
Author
Creator
CVSS
6.5 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

CVSS metrics

Description

An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. By intercepting an HTTP request and changing the filename property in the download interface, any file on the device can be deleted.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References