← Back to search

CVE-2026-24079

8.1 HIGH

Published 2026-08-04 · Updated 2026-08-06

AI risk analysis

Summary
The flaw involves a cryptographic issue where malformed or missing authentication parameters can lead to unauthorized access during registration requests.
Exploitability
Exploitation requires specific conditions and malformed requests; it is moderately difficult given the need for precise input manipulation.
Blast radius
If exploited, this could result in significant data breaches affecting devices using affected firmware versions.
Prioritized remediation
Update to the latest firmware versions immediately to patch the cryptographic vulnerability.
auth-bypasscryptofirmwareregistration

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Weaknesses

CWE-306

Vendors

qualcomm

Products

ar8035 firmware, ar8035, csra6620 firmware, csra6620, csra6640 firmware, csra6640, fastconnect 6200 firmware, fastconnect 6200, fastconnect 6700 firmware, fastconnect 6700, snapdragon 778g\+ 5g mobile platform firmware, snapdragon 778g\+ 5g mobile platform

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.