Vulnerability Description
WAVLINK WN701AE M01AE_V240305 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Wavlink | Wn701Ae Firmware | m01ae_v240305 |
| Wavlink | Wn701Ae | - |
Related Weaknesses (CWE)
References
- https://colorful-meadow-5b9.notion.site/WN701AE_HardCode_vuln-14ac216a1c308015b5ExploitThird Party Advisory
- https://docs.wavlink.xyz/Firmware_ch/fm-701e/Product
FAQ
What is CVE-2024-54745?
CVE-2024-54745 is a vulnerability with a CVSS score of 9.8 (CRITICAL). WAVLINK WN701AE M01AE_V240305 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
How severe is CVE-2024-54745?
CVE-2024-54745 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2024-54745?
Check the references section above for vendor advisories and patch information. Affected products include: Wavlink Wn701Ae Firmware, Wavlink Wn701Ae.