CVE Database
/

CVE-2024-46873

Back to search

CVE-2024-46873

Published: Dec 23, 2024

Modified: Dec 24, 2024

PUBLISHED

CVSS v3.0

9.8

CRITICAL

Description

Multiple SHARP routers leave the hidden debug function enabled. An arbitrary OS command may be executed with the root privilege by a remote unauthenticated attacker.

VendorProductVersions

Sharp Corporation

home 5G HR02

affected
S5.82.00 and earlier

Sharp Corporation

Wi-Fi STATION SH-52B

affected
S3.87.11 and earlier

Sharp Corporation

Wi-Fi STATION SH-54C

affected
S6.60.00 and earlier

Sharp Corporation

Wi-Fi STATION SH-05L

affected
01.00.C0 and earlier

Sharp Corporation

PocketWifi 809SH

affected
01.00.B9 and earlier

Sharp Corporation

Speed Wi-Fi NEXT W07

affected
02.00.48 and earlier

Weaknesses (CWE)

CVSS v3.0 Details

CVSS v3.0 Vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now