Vulnerabilities > CVE-2023-0352 - Unspecified vulnerability in Akuvox E11 Firmware

047910
CVSS 9.1 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
NONE
network
low complexity
akuvox
critical

Summary

The Akuvox E11 password recovery webpage can be accessed without authentication, and an attacker could download the device key file. An attacker could then use this page to reset the password back to the default.

Vulnerable Configurations

Part Description Count
OS
Akuvox
1
Hardware
Akuvox
1