Wbr 6012 Firmware
Vendor:
First CVE: Oct 30, 2024 · Active for 1 year
12
Total CVEs
More Total CVEs than 91% of tracked products
12.0
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
7.5
Avg CVSS
Higher Avg CVSS than 62% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Wbr 6012 Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 30, 2024
20 months ago
Most Recent CVE
Oct 30, 2024
636 days ago
CVE Severity & Scoring
Wbr 6012 Firmware12 CVEs
25%
67%
8%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network12 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (75.0%)
High3 (25.0%)
Unknown0 (0.0%)
User Interaction
None11 (91.7%)
Unknown0 (0.0%)
Required1 (8.3%)
Privileges Required
Low1 (8.3%)
High0 (0.0%)
None11 (91.7%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (12 CVEs).
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-31151CRITICAL A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain unauthorized access during the first 30 seconds post-boot. Other vulne | Oct 30, 2024 | 9.8 | 30 | NO | NO |
CVE-2024-33699HIGH The LevelOne WBR-6012 router's web application has a vulnerability in its firmware version R0.40e6, allowing attackers to change the administrator password and gain higher privileg | Oct 30, 2024 | 8.8 | 29 | NO | NO |
CVE-2024-31152HIGH The LevelOne WBR-6012 router with firmware R0.40e6 is vulnerable to improper resource allocation within its web application, where a series of crafted HTTP requests can cause a reb | Oct 30, 2024 | 7.5 | 28 | NO | NO |
CVE-2024-24777HIGH A cross-site request forgery (CSRF) vulnerability exists in the Web Application functionality of the LevelOne WBR-6012 R0.40e6. A specially crafted HTTP request can lead to unautho | Oct 30, 2024 | 8.8 | 28 | NO | NO |
CVE-2024-23309HIGH The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due to reliance on client IP addresses for authentication. Atta | Oct 30, 2024 | 8.1 | 26 | NO | NO |
CVE-2024-33623HIGH A denial of service vulnerability exists in the Web Application functionality of LevelOne WBR-6012 R0.40e6. A specially crafted HTTP request can lead to a reboot. An attacker can s | Oct 30, 2024 | 7.5 | 23 | NO | NO |
CVE-2024-33700HIGH The LevelOne WBR-6012 router firmware R0.40e6 suffers from an input validation vulnerability within its FTP functionality, enabling attackers to cause a denial of service through a | Oct 30, 2024 | 7.5 | 22 | NO | NO |
CVE-2024-33603MEDIUM The LevelOne WBR-6012 router has an information disclosure vulnerability in its web application, which allows unauthenticated users to access a verbose system log page and obtain s | Oct 30, 2024 | 5.3 | 20 | NO | NO |
CVE-2024-28875HIGH A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain unauthorized access during the first 30 seconds post-boot. Other vulne | Oct 30, 2024 | 8.1 | 20 | NO | NO |
CVE-2024-28052HIGH The WBR-6012 is a wireless SOHO router. It is a low-cost device which functions as an internet gateway for homes and small offices while aiming to be easy to configure and operate. | Oct 30, 2024 | 7.5 | 19 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (12 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (12 CVEs).
Media Mentions
Signals from CVEs in this product scope (12 CVEs).
Top CNAs Publishing CVEs For Wbr 6012 Firmware
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| r0.40e6 | 12 | 7.5 | 4.9% | 0 | 0 |