9.8
CVSSv3

CVE-2022-45599

Published: 22/02/2023 Updated: 03/03/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Aztech WMB250AC Mesh Routers Firmware Version 016 2020 is vulnerable to PHP Type Juggling in file /var/www/login.php, allows malicious users to gain escalated privileges only when specific conditions regarding a given accounts hashed password.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

aztech wmb250ac_firmware 016_2020

Github Repositories

CVE-2022-45599 CVE URL: cvemitreorg/cgi-bin/cvenamecgi?name=CVE-2022-45599 Reported by: TanYeeTat Product: Aztech WMB250AC Wireless Mesh Routers Affected Firmware: 2020 Release (topaz-linuxlzmaimg) Firmware download: closed source Product Manual: kylaconnectcom/download-center/ Vulnerability was reported to Aztech's security team