Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q4rj-q7j3-gxf6

Опубликовано: 03 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6

Описание

When configured as L2TP/IPSec VPN server, Archer AXE75 V1 may accept connections using L2TP without IPSec protection, even when IPSec is enabled.  This allows VPN sessions without encryption, exposing data in transit and compromising confidentiality.

When configured as L2TP/IPSec VPN server, Archer AXE75 V1 may accept connections using L2TP without IPSec protection, even when IPSec is enabled.  This allows VPN sessions without encryption, exposing data in transit and compromising confidentiality.

EPSS

Процентиль: 12%
0.0004
Низкий

6 Medium

CVSS4

Дефекты

CWE-693

Связанные уязвимости

nvd
5 дней назад

When configured as L2TP/IPSec VPN server, Archer AXE75 V1 may accept connections using L2TP without IPSec protection, even when IPSec is enabled.  This allows VPN sessions without encryption, exposing data in transit and compromising confidentiality.

EPSS

Процентиль: 12%
0.0004
Низкий

6 Medium

CVSS4

Дефекты

CWE-693