Web page which "wizardpwd.asp" ALLNET Router model WR0500AC is prone to Authorization bypass vulnerability – the password, located at "admin" allows changing the http[s]://wizardpwd.asp/cgi-bin. Does not validate the user's identity and can be accessed publicly.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.gov.il/en/Departments/faq/cve_advisories |
History
No history.
MITRE
Status: PUBLISHED
Assigner: INCD
Published: 2022-07-21T15:37:00
Updated: 2024-08-03T09:22:10.317Z
Reserved: 2022-06-29T00:00:00
Link: CVE-2022-34767
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-07-21T16:15:09.247
Modified: 2024-11-21T07:10:08.750
Link: CVE-2022-34767
Redhat
No data.