CVE-2023-2231
MAXTECH MAX-G866ac Remote Management missing authentication
Vexday Risk Score
28Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 9.8EPSS 2.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
21 Apr 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability, which was classified as critical, was found in MAXTECH MAX-G866ac 0.4.1_TBRO_20160314. This affects an unknown part of the component Remote Management. The manipulation leads to missing authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-227001 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
MAXTECH · MAX-G866acWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →