Security Advisory

CVE-2019-7564

9.8
CRITICAL

Vulnerability Description

An issue was discovered on Shenzhen Coship WM3300 WiFi Router 5.0.0.55 devices. The password reset functionality of the Wireless SSID doesn't require any type of authentication. By making a POST request to the regx/wireless/wl_security_2G.asp URI, the attacker can change the password of the Wi-FI network.
Published Date May 7, 2019
Official Source NIST NVD Advisory