Vulnerability Description
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to improper implementation of password policies. A local attacker could exploit this by creating password that do not adhere to the defined security standards/policy on the vulnerable system. Successful exploitation of this vulnerability could allow the attacker to expose the router to potential security threats.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Syrotech | Sy-Gpon-1110-Wdont Firmware | 3.1.02-231102 |
| Syrotech | Sy-Gpon-1110-Wdont | - |
Related Weaknesses (CWE)
References
- https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&VLCODE=CIVN-2024-0Third Party Advisory
- https://cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&VLCODE=CIVN-2024-0225
FAQ
What is CVE-2024-41686?
CVE-2024-41686 is a vulnerability with a CVSS score of 3.3 (LOW). This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to improper implementation of password policies. A local attacker could exploit this by creating password that do not adhere to the ...
How severe is CVE-2024-41686?
CVE-2024-41686 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-41686?
Check the references section above for vendor advisories and patch information. Affected products include: Syrotech Sy-Gpon-1110-Wdont Firmware, Syrotech Sy-Gpon-1110-Wdont.