Cleartext Sensitive Information Vulnerability in LevelOne WBR-6012 Router Firmware
CVE-2024-32946

5.9MEDIUM

Key Information:

Vendor

Levelone

Status
Vendor
CVE Published:
30 October 2024

What is CVE-2024-32946?

A vulnerability in the LevelOne WBR-6012 router's firmware version R0.40e6 allows sensitive information to be transmitted in cleartext via Web and FTP services, exposing it to network sniffing attacks.

Affected Version(s)

WBR-6012 R0.40e6

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Discovered by Patrick DeSantis of Cisco Talos.
.