An access control issue in Wavlink WiFi-Repeater RPTA2-77W.M4300.01.GD.2017Sep19 allows attackers to obtain the telnet password via accessing the page tftp.txt.
References
Link | Resource |
---|---|
https://github.com/pghuanghui/CVE_Request/blob/main/WiFi-Repeater/WiFi-Repeater_syslog.shtml.assets/WiFi-Repeater_tftp.md | Exploit Third Party Advisory |
https://www.wavlink.com/en_us/category/REPEATER.html | Product Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-07-25 15:15
Updated : 2022-08-03 09:45
NVD link : CVE-2022-34572
Mitre link : CVE-2022-34572
JSON object : View
CWE
CWE-862
Missing Authorization
Products Affected
wavlink
- wifi-repeater_firmware