CVE-2024-56316 Information

Description

In AXESS ACS (Auto Configuration Server) through 5.2.0 unsanitized user input in the TR069 API allows remote unauthenticated attackers to cause a permanent Denial of Service via crafted TR069 requests on TCP port 9675 or 7547. Rebooting does not resolve the permanent Denial of Service.

Reference

https://www.y-security.de/news-en/axess-auto-configuration-server-denial-of-service-cve-2024-56316/

Share on: