Security Advisory

CVE-2022-34767

5.9
MEDIUM

Vulnerability Description

Web page which "wizardpwd.asp" ALLNET Router model WR0500AC is prone to Authorization bypass vulnerability – the password, located at "admin" allows changing the http[s]://wizardpwd.asp/cgi-bin. Does not validate the user's identity and can be accessed publicly.
Published Date July 21, 2022
Official Source NIST NVD Advisory