Denial-of-Service Issue Affects GL-iNet Devices
CVE-2024-28077
7.5HIGH
What is CVE-2024-28077?
A vulnerability affecting specific GL-iNet devices enables denial-of-service attacks by exploiting certain character inputs in usernames. These vulnerabilities allow external network detection via Dynamic DNS (DDNS), exposing IP addresses and ports of the devices. An attacker can manipulate the login interface using carefully crafted inputs, leading to crashes in the session-management program. This situation effectively locks users out of their devices, disrupting normal operation and potentially compromising the security of network communications.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
