Vulnerabilities > CVE-2024-31070 - Insecure Default Initialization of Resource vulnerability in Centurysys products
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
HIGH Summary
Initialization of a resource with an insecure default vulnerability in FutureNet NXR series, VXR series and WXR series provided by Century Systems Co., Ltd. allows a remote unauthenticated attacker to access telnet service unlimitedly.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
References
- https://jvn.jp/en/vu/JVNVU96424864/
- https://jvn.jp/en/vu/JVNVU96424864/
- https://www.centurysys.co.jp/backnumber/nxr_common/20240716-01.html
- https://www.centurysys.co.jp/backnumber/nxr_common/20240716-01.html
- https://www.centurysys.co.jp/backnumber/nxr_common/20240716-03.html
- https://www.centurysys.co.jp/backnumber/nxr_common/20240716-03.html