CVE-2024-46041: High severity smart plugs vulnerability
Published Oct 7, 2024
·Updated
IoT Haat Smart Plug IH-IN-16A-S v5.16.1 is vulnerable to Authentication Bypass by Capture-replay.
Affected Software
1 affected component
IoT Haat Smart Plug
Event History
Oct 7, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-46041?
CVE-2024-46041 has been rated as a high severity vulnerability due to its potential for allowing unauthorized access.
2
How does the CVE-2024-46041 vulnerability occur?
The CVE-2024-46041 vulnerability occurs due to an authentication bypass by capture-replay attack on the IoT Haat Smart Plug.
3
How do I fix CVE-2024-46041?
Fixing CVE-2024-46041 involves updating the IoT Haat Smart Plug to the latest firmware version that addresses the authentication bypass issue.
4
What devices are affected by CVE-2024-46041?
CVE-2024-46041 specifically affects the IoT Haat Smart Plug model IH-IN-16A-S running version 5.16.1.
5
What is the impact of CVE-2024-46041?
The impact of CVE-2024-46041 can lead to unauthorized control of the smart plug, compromising the security of the connected environment.