CVE-2022-45599

Severity CVSS v4.0:
Pending analysis
Type:
CWE-522 Insufficiently Protected Credentials
Publication date:
22/02/2023
Last modified:
17/03/2025

Description

Aztech WMB250AC Mesh Routers Firmware Version 016 2020 is vulnerable to PHP Type Juggling in file /var/www/login.php, allows attackers to gain escalated privileges only when specific conditions regarding a given accounts hashed password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:aztech:wmb250ac_firmware:016_2020:*:*:*:*:*:*:*
cpe:2.3:h:aztech:wmb250ac:-:*:*:*:*:*:*:*