InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 does not enforce an efficient password policy. This may allow an attacker with obtained user credentials to enumerate passwords and impersonate other application users and perform operations on their behalf.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-280-05 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2021-10-19T12:10:32.966857Z
Updated: 2024-09-16T16:44:09.207Z
Reserved: 2021-08-10T00:00:00
Link: CVE-2021-38462
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-10-19T13:15:10.833
Modified: 2024-11-21T06:17:09.680
Link: CVE-2021-38462
Redhat
No data.