Vulnerability Description
Missing authentication for critical function vulnerability exists in Rakuten Turbo 5G firmware version V1.3.18 and earlier. If this vulnerability is exploited, a remote unauthenticated attacker may update or downgrade the firmware on the device.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://jvn.jp/en/vu/JVNVU90667116/
- https://network.mobile.rakuten.co.jp/internet/turbo/information/news/3184/
FAQ
What is CVE-2024-47865?
CVE-2024-47865 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Missing authentication for critical function vulnerability exists in Rakuten Turbo 5G firmware version V1.3.18 and earlier. If this vulnerability is exploited, a remote unauthenticated attacker may up...
How severe is CVE-2024-47865?
CVE-2024-47865 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-47865?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.