CVE-2024-54767

An access control issue in the component /juis_boxinfo.xml of AVM FRITZ!Box 7530 AX v7.59 allows attackers to obtain sensitive information without authentication. NOTE: this is disputed by the Supplier because it cannot be reproduced, and the issue report focuses on an unintended configuration with direct Internet exposure.
Configurations

No configuration.

History

02 Apr 2025, 14:15

Type Values Removed Values Added
Summary (en) An access control issue in the component /juis_boxinfo.xml of AVM FRITZ!Box 7530 AX v7.59 allows attackers to obtain sensitive information without authentication. (en) An access control issue in the component /juis_boxinfo.xml of AVM FRITZ!Box 7530 AX v7.59 allows attackers to obtain sensitive information without authentication. NOTE: this is disputed by the Supplier because it cannot be reproduced, and the issue report focuses on an unintended configuration with direct Internet exposure.
References
  • () https://github.com/Shuanunio/CVE_Requests/issues/1 -

07 Jan 2025, 16:15

Type Values Removed Values Added
Summary
  • (es) Un problema de control de acceso en el componente /juis_boxinfo.xml de AVM FRITZ!Box 7530 AX v7.59 permite a los atacantes obtener información confidencial sin autenticación.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-203

06 Jan 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-06 23:15

Updated : 2025-04-02 14:15


NVD link : CVE-2024-54767

Mitre link : CVE-2024-54767

CVE.ORG link : CVE-2024-54767


JSON object : View

Products Affected

No product.

CWE
CWE-203

Observable Discrepancy