CVE-2024-53938: High severity victure rx1800 vulnerability
An issue was discovered in Victure RX1800 WiFi 6 Router (software ENV1.0.0r12110933, hardware 1.0) devices. The TELNET service is enabled by default and exposed over the LAN. The root account is accessible without a password, allowing attackers to achieve full control over the router remotely without any authentication.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-53938?
CVE-2024-53938 has a high severity due to the TELNET service being enabled by default and giving full control to attackers.
How do I fix CVE-2024-53938?
To fix CVE-2024-53938, disable the TELNET service and ensure that the root account requires a strong password.
What are the risks associated with CVE-2024-53938?
The risks include unauthorized remote access to the router, which can lead to complete control over the device and potential network breaches.
Which devices are affected by CVE-2024-53938?
CVE-2024-53938 affects the Victure RX1800 WiFi 6 Router running software version EN_V1.0.0_r12_110933.
What vulnerabilities does CVE-2024-53938 exploit?
CVE-2024-53938 exploits the presence of an enabled TELNET service and the lack of a password for the root account.