Описание
Edimax GS-5008PL firmware version 1.00.54 and prior use cleartext HTTP for the web management interface without implementing TLS or SSL encryption. Attackers on the same network can intercept management traffic to capture administrator credentials and sensitive configuration data.
Edimax GS-5008PL firmware version 1.00.54 and prior use cleartext HTTP for the web management interface without implementing TLS or SSL encryption. Attackers on the same network can intercept management traffic to capture administrator credentials and sensitive configuration data.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2026-32838
- https://www.edimax.com/edimax/merchandise/merchandise_detail/data/edimax/us/smb_legacy_switches/gs-5008pl
- https://www.edimax.com/edimax/merchandise/merchandise_list/data/edimax/us/smb_legacy_products
- https://www.vulncheck.com/advisories/edimax-gs-5008pl-transmits-credentials-over-cleartext-http
Связанные уязвимости
Edimax GS-5008PL firmware version 1.00.54 and prior use cleartext HTTP for the web management interface without implementing TLS or SSL encryption. Attackers on the same network can intercept management traffic to capture administrator credentials and sensitive configuration data.
Уязвимость веб-интерфейса управления микропрограммного обеспечения коммутаторов EDIMAX GS-5008PL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации