An issue was discovered where a page is exposed that has the current administrator password in cleartext in the source code of the page. No authentication is required in order to reach the page (a certain live_?.shtml page with the variable syspasswd). Affected Devices: Wavlink WN530HG4, Wavlink WN531G3, and Wavlink WN572HG3
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-05-07T17:51:48
Updated: 2024-08-04T11:21:14.518Z
Reserved: 2020-03-26T00:00:00
Link: CVE-2020-10972
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-05-07T18:15:11.257
Modified: 2024-11-21T04:56:29.260
Link: CVE-2020-10972
Redhat
No data.