PT-2026-30259 · Prosoft Technology · Icx35-Hwc Firmware

Published

2026-04-03

·

Updated

2026-04-03

·

CVE-2017-20235

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
ProSoft Technology ICX35-HWC version 1.3 and prior cellular gateways contain an authentication bypass vulnerability in the web user interface that allows unauthenticated attackers to gain access to administrative functions without valid credentials. Attackers can bypass the authentication mechanism in affected firmware versions to obtain full administrative access to device configuration and settings.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2017-20235

Affected Products

Icx35-Hwc Firmware