CVE-2024-30219

Active debug code vulnerability exists in PLANEX COMMUNICATIONS wireless LAN routers. If a logged-in user who knows how to use the debug function accesses the device's management page, an unintended operation may be performed. Note that MZK-MF300N is no longer supported, therefore the update for this product is not provided.
References
Link Resource
https://jvn.jp/en/vu/JVNVU91975826/ Third Party Advisory
https://jvn.jp/en/vu/JVNVU91975826/ Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:planex:mzk-mf300n_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:planex:mzk-mf300n:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:planex:mzk-mf300hp2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:planex:mzk-mf300hp2:-:*:*:*:*:*:*:*

History

30 Jun 2025, 14:22

Type Values Removed Values Added
First Time Planex mzk-mf300hp2 Firmware
Planex mzk-mf300n
Planex mzk-mf300n Firmware
Planex
Planex mzk-mf300hp2
CPE cpe:2.3:o:planex:mzk-mf300n_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:planex:mzk-mf300n:-:*:*:*:*:*:*:*
cpe:2.3:o:planex:mzk-mf300hp2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:planex:mzk-mf300hp2:-:*:*:*:*:*:*:*
References () https://jvn.jp/en/vu/JVNVU91975826/ - () https://jvn.jp/en/vu/JVNVU91975826/ - Third Party Advisory

26 Feb 2025, 13:15

Type Values Removed Values Added
Summary (en) Active debug code vulnerability exists in MZK-MF300N all firmware versions. If a logged-in user who knows how to use the debug function accesses the device's management page, an unintended operation may be performed. (en) Active debug code vulnerability exists in PLANEX COMMUNICATIONS wireless LAN routers. If a logged-in user who knows how to use the debug function accesses the device's management page, an unintended operation may be performed. Note that MZK-MF300N is no longer supported, therefore the update for this product is not provided.
CWE CWE-489

21 Nov 2024, 09:11

Type Values Removed Values Added
References () https://jvn.jp/en/vu/JVNVU91975826/ - () https://jvn.jp/en/vu/JVNVU91975826/ -

27 Oct 2024, 03:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.8

14 May 2024, 15:22

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad de código de depuración activa en todas las versiones de firmware del MZK-MF300N. Si un usuario que ha iniciado sesión y sabe cómo utilizar la función de depuración accede a la página de administración del dispositivo, se puede realizar una operación no deseada.

15 Apr 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-15 11:15

Updated : 2025-06-30 14:22


NVD link : CVE-2024-30219

Mitre link : CVE-2024-30219

CVE.ORG link : CVE-2024-30219


JSON object : View

Products Affected

planex

  • mzk-mf300n_firmware
  • mzk-mf300hp2_firmware
  • mzk-mf300n
  • mzk-mf300hp2
CWE
CWE-489

Active Debug Code