First published: Fri Aug 18 2023(Updated: )
LAN-W451NGR all versions provided by LOGITEC CORPORATION contains an improper access control vulnerability, which allows an unauthenticated attacker to log in to telnet service.
Credit: vultures@jpcert.or.jp vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Elecom Lan-w451ngr Firmware | ||
Elecom Lan-w451ngr | ||
All of | ||
Elecom Lan-w451ngr Firmware | ||
Elecom Lan-w451ngr |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-38132 is an improper access control vulnerability in LAN-W451NGR devices provided by LOGITEC CORPORATION, allowing unauthenticated attackers to log in to the telnet service.
CVE-2023-38132 has a severity rating of 8.8 (high).
An attacker can exploit CVE-2023-38132 by leveraging the improper access control vulnerability to log in to the telnet service without authentication.
All versions of LAN-W451NGR provided by LOGITEC CORPORATION are affected by CVE-2023-38132.
To fix CVE-2023-38132, it is recommended to apply the firmware update provided by LOGITEC CORPORATION.