CVE-2024-24300: 4ipnet Eap-767 Firmware

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

4ipnet EAP-767 v3.42.00 is vulnerable to Incorrect Access Control. The device uses the same set of credentials, regardless of how many times a user logs in, the content of the cookie remains unchanged.

Affected products

  • 4ipnet Eap-767 Firmware: version 3.42.00 only

Published 2024-02-14. Last modified 2026-06-17.