Vulnerabilities > CVE-2020-17466 - Always-Incorrect Control Flow Implementation vulnerability in Turcom Trcwifizone 20200810

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
turcom
CWE-670
critical

Summary

Turcom TRCwifiZone through 2020-08-10 allows authentication bypass by visiting manage/control.php and ignoring 302 Redirect responses.

Vulnerable Configurations

Part Description Count
Application
Turcom
2