8.8
CVSSv3

CVE-2022-45600

Published: 22/02/2023 Updated: 03/03/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote malicious users to bypass authentication in opportunistic circumstances and execute arbitrary commands with administrator privileges by leveraging an existing web portal login.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

aztech wmb250ac_firmware 016_2020

Github Repositories

CVE-2022-45600 CVE URL: cvemitreorg/cgi-bin/cvenamecgi?name=CVE-2022-45600 Reported by: TanYeeTat Product: Aztech WMB250AC Wireless Mesh Routers Affected Firmware: 2020 Release (topaz-linuxlzmaimg) Firmware download: closed source Product Manual: kylaconnectcom/download-center/ Vulnerability was reported to Aztech's security team