Back to Database
Status published
Medium
CVE-2024-47865
Missing authentication for critical function vulnerability exists in Rakuten Turbo...
Vulnerability Description
Missing authentication for critical function vulnerability exists in Rakuten Turbo 5G firmware version V1.3.18 and earlier. If this vulnerability is exploited, a remote unauthenticated attacker may update or downgrade the firmware on the device.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-47865
Credits & Attribution
No credits recorded in the NVD database.
References
More from Rakuten Mobile, Inc.
View All →CVE-2024-52033
Exposure of sensitive system information to an unauthorized control sphere...
Medium
5.3
CVE-2024-48895
Improper neutralization of special elements used in an OS command...
High
8.8
CVE-2023-40282
Improper authentication vulnerability in Rakuten WiFi Pocket all versions allows...
Unknown
0
CVE-2022-29525
Rakuten Casa version AP_F_V1_4_1 or AP_F_V2_0_0 uses a hard-coded credential...
Critical
9.8
CVE-2022-28704
Improper access control vulnerability in Rakuten Casa version AP_F_V1_4_1 or...
High
7.2
Affected Vendor
Rakuten Mobile, Inc.
View all reports →Affected Software
Rakuten Turbo 5G
Vulnerable Versions:
V1.3.18 and earlier
Timeline
Official Publish:
November 20th, 2024
Last Modified:
November 20th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N