CVE-2024-28747
CVE-2024-28747 exposes SmartSPS devices to unauthenticated remote access due to hard-coded credentials. This vulnerability allows attackers to gain high privileges without any authentication. Although the CVSS score is 0, implying minimal impact, the SVRS of 30 indicates a moderate risk. An unauthenticated attacker can leverage these credentials to compromise the device. While the SVRS doesn't signal immediate critical action, the presence of "In The Wild" tags indicates active exploitation. Organizations using SmartSPS devices should investigate and remediate this vulnerability promptly to prevent potential unauthorized access and control. Ignoring this vulnerability could lead to significant security breaches.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.