Web page which "wizardpwd.asp" ALLNET Router model WR0500AC is prone to Authorization bypass vulnerability – the password, located at "admin" allows changing the http[s]://wizardpwd.asp/cgi-bin. Does not validate the user's identity and can be accessed publicly.
                
            Metrics
Affected Vendors & Products
References
        | Link | Providers | 
|---|---|
| https://www.gov.il/en/Departments/faq/cve_advisories |     | 
History
                    No history.
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: INCD
Published: 2022-07-21T15:37:00
Updated: 2024-08-03T09:22:10.317Z
Reserved: 2022-06-29T00:00:00
Link: CVE-2022-34767
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Modified
Published: 2022-07-21T16:15:09.247
Modified: 2024-11-21T07:10:08.750
Link: CVE-2022-34767
 Redhat
                        Redhat
                    No data.
 ReportizFlow
ReportizFlow