The Akuvox E11 web server can be accessed without any user authentication, and this could allow an attacker to access sensitive information, as well as create and download packet captures with known default URLs.
References
Link | Resource |
---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-23-068-01 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2023-03-13 14:15
Updated : 2023-03-16 11:08
NVD link : CVE-2023-0354
Mitre link : CVE-2023-0354
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
akuvox
- e11_firmware
- e11