High severity8.8NVD Advisory· Published Oct 22, 2020· Updated Jun 17, 2026
CVE-2020-24033
CVE-2020-24033
Description
An issue was discovered in fs.com S3900 24T4S 1.7.0 and earlier. The form does not have an authentication or token authentication mechanism that allows remote attackers to forge requests on behalf of a site administrator to change all settings including deleting users, creating new users with escalated privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- fs.com/S3900 24T4Sdescription
- Range: <=1.7.0
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.