Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c873-6fqc-4wg3

Опубликовано: 22 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Web page which "wizardpwd.asp" ALLNET Router model WR0500AC is prone to Authorization bypass vulnerability – the password, located at "admin" allows changing the http[s]://wizardpwd.asp/cgi-bin. Does not validate the user's identity and can be accessed publicly.

Web page which "wizardpwd.asp" ALLNET Router model WR0500AC is prone to Authorization bypass vulnerability – the password, located at "admin" allows changing the http[s]://wizardpwd.asp/cgi-bin. Does not validate the user's identity and can be accessed publicly.

EPSS

Процентиль: 44%
0.00213
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 5.9
nvd
больше 3 лет назад

Web page which "wizardpwd.asp" ALLNET Router model WR0500AC is prone to Authorization bypass vulnerability – the password, located at "admin" allows changing the http[s]://wizardpwd.asp/cgi-bin. Does not validate the user's identity and can be accessed publicly.

EPSS

Процентиль: 44%
0.00213
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287