Description
A brute-force protection bypass in CAPTCHA protection in ASUS ROG Rapture GT-AX11000, RT-AX3000, RT-AX55, RT-AX56U, RT-AX56U_V2, RT-AX58U, RT-AX82U, RT-AX82U GUNDAM EDITION, RT-AX86 Series(RT-AX86U/RT-AX86S), RT-AX86U ZAKU II EDITION, RT-AX88U, RT-AX92U, TUF Gaming AX3000, TUF Gaming AX5400 (TUF-AX5400), ASUS ZenWiFi XD6, ASUS ZenWiFi AX (XT8) before 3.0.0.4.386.45898, and RT-AX68U before 3.0.0.4.386.45911, allows a remote attacker to attempt any number of login attempts via sending a specific HTTP request.
Published: 2021-11-19
Score: 9.8 Critical
EPSS: 2.5% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-28462 A brute-force protection bypass in CAPTCHA protection in ASUS ROG Rapture GT-AX11000, RT-AX3000, RT-AX55, RT-AX56U, RT-AX56U_V2, RT-AX58U, RT-AX82U, RT-AX82U GUNDAM EDITION, RT-AX86 Series(RT-AX86U/RT-AX86S), RT-AX86U ZAKU II EDITION, RT-AX88U, RT-AX92U, TUF Gaming AX3000, TUF Gaming AX5400 (TUF-AX5400), ASUS ZenWiFi XD6, ASUS ZenWiFi AX (XT8) before 3.0.0.4.386.45898, and RT-AX68U before 3.0.0.4.386.45911, allows a remote attacker to attempt any number of login attempts via sending a specific HTTP request.
History

No history.

Subscriptions

Asus Gt-ax11000 Gt-ax11000 Firmware Rt-ax3000 Rt-ax3000 Firmware Rt-ax55 Rt-ax55 Firmware Rt-ax56u Rt-ax56u Firmware Rt-ax56u V2 Rt-ax56u V2 Firmware Rt-ax58u Rt-ax58u Firmware Rt-ax68u Rt-ax68u Firmware Rt-ax82u Rt-ax82u Firmware Rt-ax82u Gundam Edition Rt-ax82u Gundam Edition Firmware Rt-ax86s Rt-ax86s Firmware Rt-ax86u Rt-ax86u Firmware Rt-ax86u Zaku Ii Edition Rt-ax86u Zaku Ii Edition Firmware Rt-ax88u Rt-ax88u Firmware Rt-ax92u Rt-ax92u Firmware Tuf-ax5400 Tuf-ax5400 Firmware Tuf Gaming Ax3000 Tuf Gaming Ax3000 Firmware Zenwifi Ax \(xt8\) Zenwifi Ax \(xt8\) Firmware Zenwifi Xd6 Zenwifi Xd6 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T03:15:27.279Z

Reserved: 2021-09-20T00:00:00.000Z

Link: CVE-2021-41435

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-11-19T12:15:09.330

Modified: 2024-11-21T06:26:14.863

Link: CVE-2021-41435

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses