CVE-2024-51978

Publication date

2025-06-25 07:17:32

Family

rapid7

State

PUBLISHED

Description

An unauthenticated attacker who knows the target devices serial number, can generate the default administrator password for the device. An unauthenticated attacker can first discover the target devices serial number via CVE-2024-51977 over HTTP/HTTPS/IPP, or via a PJL request, or via an SNMP request.