Vulnerabilities > CVE-2024-31070 - Insecure Default Initialization of Resource vulnerability in Centurysys products

047910
CVSS 9.1 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
centurysys
CWE-1188
critical

Summary

Initialization of a resource with an insecure default vulnerability in FutureNet NXR series, VXR series and WXR series provided by Century Systems Co., Ltd. allows a remote unauthenticated attacker to access telnet service unlimitedly.

Vulnerable Configurations

Part Description Count
OS
Centurysys
370
Hardware
Centurysys
9