CVE-2024-33374: Critical severity lb-link bl-w1210m firmware vulnerability
Published Jun 14, 2024
·Updated
Incorrect access control in the UART/Serial interface on the LB-LINK BL-W1210M v2.0 router allows attackers to access the root terminal without authentication.
Affected Software
1 affected component
LB-LINK BL-W1210M
Event History
Jun 14, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-33374?
CVE-2024-33374 has a moderate severity level due to the potential for unauthorized root access.
2
How do I fix CVE-2024-33374?
To fix CVE-2024-33374, ensure that your LB-LINK BL-W1210M v2.0 router firmware is updated to the latest version provided by the manufacturer.
3
What systems are affected by CVE-2024-33374?
CVE-2024-33374 affects the LB-LINK BL-W1210M v2.0 router specifically.
4
What type of vulnerability is CVE-2024-33374?
CVE-2024-33374 is an incorrect access control vulnerability in the UART/Serial interface of the router.
5
Can CVE-2024-33374 be exploited remotely?
Yes, CVE-2024-33374 can be exploited remotely, allowing attackers to access the root terminal without authentication.