CVE-2024-36439: Swissphone Dical-Red 4009
Critical severity, CVSS 9.4. EPSS: 0.9% chance of exploitation in the next 30 days.
Swissphone DiCal-RED 4009 devices allow a remote attacker to gain access to the administrative web interface via the device password's hash value, without knowing the actual device password.
Affected products
- Swissphone Dical-Red 4009: any version
Published 2024-08-22. Last modified 2026-06-17.