ZeroHour

CVE-2022-45600

PoC
CVSS 3.1
8.8 high
EPSS
2%p83
Published
()
Modified
Description

Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote attackers to bypass authentication in opportunistic circumstances and execute arbitrary commands with administrator privileges by leveraging an existing web portal login.

Vendors
aztech
Products
wmb250ac firmware
Weakness
CWE-77
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.