CVE Vulnerabilities

CVE-2024-40750

Cleartext Storage of Sensitive Information

Published: Jul 09, 2024 | Modified: Jun 30, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Linksys Velop Pro 6E 1.0.8 MX6200_1.0.8.215731 and 7 1.0.10.215314 devices send cleartext Wi-Fi passwords over the public Internet during app-based installation.

Weakness

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

Affected Software

Name Vendor Start Version End Version
Mx6200_firmware Linksys 1.0.8.215731 (including) 1.0.8.215731 (including)

Potential Mitigations

References