Логотип exploitDog
bind:CVE-2026-27752
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-27752

Количество 2

Количество 2

nvd логотип

CVE-2026-27752

около 1 месяца назад

SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 transmit authentication credentials over unencrypted HTTP, allowing attackers to capture credentials. An attacker positioned to observe network traffic between a user and the device can intercept credentials and reuse them to gain administrative access to the gateway.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xp4w-rp7m-jgwq

около 1 месяца назад

SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 transmit authentication credentials over unencrypted HTTP, allowing attackers to capture credentials. An attacker positioned to observe network traffic between a user and the device can intercept credentials and reuse them to gain administrative access to the gateway.

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-27752

SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 transmit authentication credentials over unencrypted HTTP, allowing attackers to capture credentials. An attacker positioned to observe network traffic between a user and the device can intercept credentials and reuse them to gain administrative access to the gateway.

CVSS3: 5.9
0%
Низкий
около 1 месяца назад
github логотип
GHSA-xp4w-rp7m-jgwq

SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 transmit authentication credentials over unencrypted HTTP, allowing attackers to capture credentials. An attacker positioned to observe network traffic between a user and the device can intercept credentials and reuse them to gain administrative access to the gateway.

CVSS3: 5.9
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу