CVE-2022-25008

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
30/03/2022
Last modified:
05/04/2022

Description

totolink EX300_v2 V4.0.3c.140_B20210429 and EX1200T V4.1.2cu.5230_B20210706 does not contain an authentication mechanism.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:totolink:ex300_v2_firmware:4.0.3c.140_b20210429:*:*:*:*:*:*:*
cpe:2.3:h:totolink:ex300_v2:-:*:*:*:*:*:*:*
cpe:2.3:o:totolink:ex1200t_firmware:4.1.2cu.5230_b20210706:*:*:*:*:*:*:*
cpe:2.3:h:totolink:ex1200t:-:*:*:*:*:*:*:*