CVE-2022-33106

WiJungle NGFW Version U250 was discovered to be vulnerable to No Rate Limit attack, allowing the attacker to brute force the admin password leading to Account Take Over.
References
Link Resource
https://hexisanoob.gitbook.io/hexisanoob/cves/cve-2022-33106 Exploit Third Party Advisory
http://wijungle.com Product
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:wijungle:u250_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:wijungle:u250:-:*:*:*:*:*:*:*

Information

Published : 2022-10-12 07:15

Updated : 2022-10-14 13:17


NVD link : CVE-2022-33106

Mitre link : CVE-2022-33106


JSON object : View

CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts

Advertisement

dedicated server usa

Products Affected

wijungle

  • u250_firmware
  • u250