CVE-2024-28325: Medium severity ASUS RT-N12+ B1 vulnerability
Published Apr 26, 2024
·Updated
Asus RT-N12+ B1 router stores credentials in cleartext, which could allow local attackers to obtain unauthorized access and modify router settings.
Affected Software
1 affected component
ASUS RT-N12+ B1
Event History
Apr 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-28325?
CVE-2024-28325 has a medium severity rating due to the potential for unauthorized access to router settings.
2
How do I fix CVE-2024-28325?
To fix CVE-2024-28325, update the firmware of the Asus RT-N12+ B1 router to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2024-28325?
Users of the Asus RT-N12+ B1 router are affected by CVE-2024-28325 due to the insecure storage of credentials.
4
What are the potential impacts of CVE-2024-28325?
The potential impacts of CVE-2024-28325 include unauthorized access and modification of router settings by local attackers.
5
Is CVE-2024-28325 exploitable remotely?
CVE-2024-28325 is primarily a local vulnerability and requires physical access for exploitation.