CVE-2024-28875 - "LevelOne WBR-6012 Web Services Remote Command Execution Backdoor"

3 weeks ago 8
ARTICLE AD BOX
CVE ID : CVE-2024-28875
Published : Oct. 30, 2024, 2:15 p.m. | 24 minutes ago
Description : A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain unauthorized access during the first 30 seconds post-boot. Other vulnerabilities can force a reboot, circumventing the initial time restriction for exploitation.The backdoor string can be found at address 0x80100910 80100910 40 6d 21 74 ds "@m!t2K1" 32 4b 31 00 It is referenced by the function located at 0x800b78b0 and is used as shown in the pseudocode below: if ((SECOND_FROM_BOOT_TIME Severity: 8.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article