CVE-2024-40750: Medium severity linksys velop pro 6e vulnerability
Linksys Velop Pro 6E 1.0.8 MX62001.0.8.215731 and 7 1.0.10.215314 devices send cleartext Wi-Fi passwords over the public Internet during app-based installation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-40750?
CVE-2024-40750 is considered a high-severity vulnerability due to the exposure of cleartext Wi-Fi passwords over the Internet.
How does CVE-2024-40750 impact users?
CVE-2024-40750 allows attackers to intercept sensitive Wi-Fi credentials during the app-based installation of affected Linksys devices.
How do I fix CVE-2024-40750?
To mitigate CVE-2024-40750, update the firmware of your Linksys Velop Pro 6E or Velop devices to the latest secure version provided by the manufacturer.
Which Linksys devices are affected by CVE-2024-40750?
CVE-2024-40750 affects Linksys Velop Pro 6E firmware version 1.0.8 MX6200_1.0.8.215731 and Velop firmware version 1.0.10.215314.
What should I do if I cannot update my device to fix CVE-2024-40750?
If unable to update, consider disconnecting the device from the Internet and using alternative methods for configuration to avoid risking exposure.