First published: Wed Oct 19 2022(Updated: )
Asus RT-N12E 2.0.0.39 is affected by an incorrect access control vulnerability. Through system.asp / start_apply.htm, an attacker can change the administrator password without any authentication.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Rt-n12e Firmware | =2.0.0.39 | |
Asus RT-N12E |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-23648.
The severity of CVE-2020-23648 is high, with a severity value of 7.5.
The affected software is Asus RT-N12E firmware version 2.0.0.39.
An attacker can exploit this vulnerability by accessing the system.asp/start_apply.htm pages and changing the administrator password without authentication.
To fix CVE-2020-23648, update your Asus RT-N12E firmware to a version that is not affected by this vulnerability.