PT-2022-5098 · Unknown · Nis-Hap11Ac

Published

2022-09-19

·

Updated

2022-09-21

·

CVE-2022-23768

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NIS-HAP11AC (affected versions not specified)
Description The issue is related to insufficient access control in the NIS-HAP11AC wireless access point firmware. It allows a remote attacker to execute arbitrary code via the external telnet port. This can lead to various attacks, including source code hijacking and remote control of the device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2022-06327
CVE-2022-23768

Affected Products

Nis-Hap11Ac