Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-46040

EPSS 0.05% · P16
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2024-46040

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
IoT Haat Smart Plug IH-IN-16A-S IH-IN-16A-S v5.16.1 suffers from Insufficient Session Expiration. The lack of validation of the authentication token at the IoT Haat during the Access Point Pairing mode leads the attacker to replay the Wi-Fi packets and forcefully turn off the access point after the authentication token has expired.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
IoT Haat Smart Plug IH-IN-16A-S 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
IoT Haat Smart Plug IH-IN-16A-S是IoT Haat公司的一款智能插头。 IoT Haat Smart Plug IH-IN-16A-S v5.16.1版本存在安全漏洞,该漏洞源于存在会话到期不足问题,缺乏对身份验证令牌的验证,导致攻击者在身份验证令牌过期后重放Wi-Fi数据包并强制关闭接入点。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2024-46040

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-46040

登录查看更多情报信息。

Same Patch Batch · n/a · 2024-10-07 · 18 CVEs total

CVE-2024-45919Solvait 安全漏洞
CVE-2024-42831ELAINE Marketing Automation 跨站脚本漏洞
CVE-2024-46278Teedy 安全漏洞
CVE-2024-46076RuoYi 安全漏洞
CVE-2024-46300itsourcecode Placement Management System 安全漏洞
CVE-2024-46446Mecha CMS 安全漏洞
CVE-2024-44068Samsung Mobile Processor 安全漏洞
CVE-2024-44674D-Link COVR-2600R 安全漏洞
CVE-2024-45894BlueCMS 安全漏洞
CVE-2024-45933Online News site 安全漏洞
CVE-2024-45874VegaBird Vooki 安全漏洞
CVE-2024-45873VegaBird Vooki 安全漏洞
CVE-2024-46325TP-LINK TL-WR740N 安全漏洞
CVE-2024-46041IoT Haat Smart Plug IH-IN-16A-S 安全漏洞
CVE-2024-28710LimeSurvey 安全漏洞
CVE-2024-28709LimeSurvey 安全漏洞
CVE-2024-45932Webkul Krayin CRM 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2024-46040

No comments yet


Leave a comment