An improper authentication vulnerability leading to information leakage was discovered in iptime NAS2dual. Remote attackers are able to steal important information in the server by exploiting vulnerabilities such as insufficient authentication when accessing the shared folder and changing user’s passwords.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: krcert

Published: 2022-03-25T18:02:37

Updated: 2024-08-03T20:26:25.555Z

Reserved: 2021-02-03T00:00:00

Link: CVE-2021-26620

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-03-25T19:15:08.687

Modified: 2022-03-31T14:34:48.607

Link: CVE-2021-26620

cve-icon Redhat

No data.