CVE-2024-51431: Lb-Link Bl-WR1300H Firmware

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

LB-LINK BL-WR 1300H v.1.0.4 contains hardcoded credentials stored in /etc/shadow which are easily guessable.

Affected products

  • Lb-Link Bl-WR1300H Firmware: version 1.0.4 only

Published 2024-11-01. Last modified 2026-06-17.