cbcvebase.
CVE-2024-3080
published 2024-06-14

CVE-2024-3080: Certain ASUS router models have authentication bypass vulnerability, allowing unauthenticated remote attackers to log in the device.

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EXPLOIT
Certain ASUS router models have authentication bypass vulnerability, allowing unauthenticated remote attackers to log in the device.

Affected

7 ranges
VendorProductVersion rangeFixed in
asusrt-ac68uearlier – 3.0.0.4.386_51668
asusrt-ac86uearlier – 3.0.0.4.386_51915
asusrt-ax57earlier – 3.0.0.4.386_52294
asusrt-ax58uearlier – 3.0.0.4.388_23925
asusrt-ax88uearlier – 3.0.0.4.388_24198
asuszenwifi_xt8earlier – 3.0.0.4.388_24609
asuszenwifi_xt8_v2earlier – 3.0.0.4.388_24609

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vulncheck9.8CRITICAL