Auth Bypass Vulnerability in LevelOne WBR-6012 Router
CVE-2024-23309
8.1HIGH
What is CVE-2024-23309?
The LevelOne WBR-6012 router, particularly with firmware version R0.40e6, is susceptible to an authentication bypass vulnerability. This security flaw arises from the reliance on client IP addresses for authentication purposes. As a result, attackers are able to exploit this vulnerability by spoofing IP addresses, thereby gaining unauthorized access to the device's web application without the need for a valid session token. This poses a serious threat to the integrity and security of the network, making it crucial for users to address this issue promptly.
Affected Version(s)
WBR-6012 R0.40e6