CVE-2024-39754: Critical severity wavlink jetstream ac3000 vulnerability
A static login vulnerability exists in the wctrls functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted set of network packets can lead to root access. An attacker can send packets to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-39754?
CVE-2024-39754 is considered a critical vulnerability due to the potential for attackers to gain root access.
How do I fix CVE-2024-39754?
To fix CVE-2024-39754, it is recommended to update the Wavlink AC3000 M33A8 firmware to the latest version provided by the vendor.
What is the impact of CVE-2024-39754?
The impact of CVE-2024-39754 is significant as it allows unauthorized users to send specially crafted packets that exploit the vulnerability, leading to root access.
Who is affected by CVE-2024-39754?
CVE-2024-39754 affects devices running the Wavlink AC3000 M33A8 with the specific firmware version V5030.210505.
How can attackers exploit CVE-2024-39754?
Attackers can exploit CVE-2024-39754 by sending specially crafted network packets to the vulnerable Wavlink AC3000 M33A8 device.