PT-2024-32369 · Nippon Telegraph Telephone · Home Gateway/Hikari Denwa
Keishi Awata
·
Published
2024-09-26
·
Updated
2024-10-17
·
CVE-2024-47044
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Home GateWay/Hikari Denwa routers (affected versions not specified)
Description
The issue is related to insufficient access restrictions for Device Setting pages in the affected routers. If exploited, an attacker who has identified the WAN-side IPv6 address may access the product's Device Setting page via WAN-side. The vulnerability only affects products subscribed and used in NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION areas.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
UI Misrepresentation of Critical Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Home Gateway/Hikari Denwa