CVE-2024-9991

NVD Published Date: October 25, 2024 at 01:15 PM
NVD Last Modified: October 28, 2024 at 01:58 PM
Download Patch
Vulnerability ID
CVE-2024-9991
Severity
None
Severity Score
None
Summary
This vulnerability exists in Philips lighting devices due to storage of Wi-Fi credentials in plain text within the device firmware. An attacker with physical access could exploit this by extracting the firmware and analyzing the binary data to obtain the plaintext Wi-Fi credentials stored on the vulnerable device. Successful exploitation of this vulnerability could allow an attacker to gain unauthorized access to the Wi-Fi network to which vulnerable device is connected.
Mitigation and Patches
-
Exploits
-
Metasploit Payload
-
Vector
None
CWE ID
CWE-312

Recent Publish

KB5044089

KB5044090

CVE-2024-49702

CVE-2024-49695

KB5044091

KB5044092

See More ...

See SecOps Solution
in action

Schedule Demo