Filtered by vendor Allnet Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-34767 1 Allnet 2 All-wr0500ac, All-wr0500ac Firmware 2023-08-08 9.8 Critical
Web page which "wizardpwd.asp" ALLNET Router model WR0500AC is prone to Authorization bypass vulnerability – the password, located at "admin" allows changing the http[s]://wizardpwd.asp/cgi-bin. Does not validate the user's identity and can be accessed publicly.