A pair of spare WiFi credentials is stored in the configuration file of the Zyxel AX7501-B0 firmware prior to V5.17(ABPC.3)C0 in cleartext. An unauthenticated attacker could use the credentials to access the WLAN service if the configuration file has been retrieved from the device by leveraging another known vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Zyxel
Published: 2023-01-17T00:00:00
Updated: 2024-08-03T14:09:57.016Z
Reserved: 2022-11-15T00:00:00
Link: CVE-2022-45439
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-01-17T02:15:09.427
Modified: 2023-01-24T20:16:45.073
Link: CVE-2022-45439
Redhat
No data.