CVE-2024-8256: Teltonika-Networks Rutos Devices
Medium severity, CVSS 5.9. EPSS: 0.2% chance of exploitation in the next 30 days.
In Teltonika Networks RUTOS devices, running on versions 7.0 to 7.8 (excluding) and TSWOS devices running on versions 1.0 to 1.3 (excluding), due to incorrect permission handling a vulnerability exists which allows a lower privileged user with default permissions to access critical device resources via the API.
Affected products
- Teltonika-Networks Rutos Devices: from 7.0, before 7.8 (fixed in 7.8)
- Teltonika-Networks Tswos: from 1.0, before 1.3 (fixed in 1.3)
- Teltonika Networks Rutos: from 7.0, before 7.8 (fixed in 7.8)
- Teltonika Networks Tswos: from 1.0, before 1.3 (fixed in 1.3)
Published 2024-12-10. Last modified 2026-06-17.