CVE-2024-47865: Rakuten Turbo 5g Firmware

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Missing authentication for critical function vulnerability exists in Rakuten Turbo 5G firmware version V1.3.18 and earlier. If this vulnerability is exploited, a remote unauthenticated attacker may update or downgrade the firmware on the device.

Affected products

Published 2024-11-20. Last modified 2026-06-17.