CVE-2024-45260: High severity gl-inet GL-iNet Devices vulnerability
An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. Users who belong to unauthorized groups can invoke any interface of the device, thereby gaining complete control over it.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-45260?
CVE-2024-45260 is classified as a high severity vulnerability due to unauthorized user access allowing complete control of affected GL-iNet devices.
How do I fix CVE-2024-45260?
To fix CVE-2024-45260, update your GL-iNet device firmware to the latest version that addresses this vulnerability.
Which devices are affected by CVE-2024-45260?
CVE-2024-45260 affects certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800.
What type of attack is associated with CVE-2024-45260?
CVE-2024-45260 is associated with unauthorized access attacks that allow users in unauthorized groups to control the device.
Does CVE-2024-45260 require authorization for access?
CVE-2024-45260 does not require authorization for access, enabling unauthorized users to invoke any interface of the device.