PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
CVE

CVE-2024-9643

9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.
Description

The Four-Faith F3x36 router using firmware v2.0.0 is vulnerable to authentication bypass due to hard-coded credentials in the administrative web server. An attacker with knowledge of the credentials can gain administrative access via crafted HTTP requests. This issue appears similar to CVE-2023-32645.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
f3x36
Updated Sep 22, 2026View on NVD →
S4E scanner

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →