CVE

CVE-2020-35758

CVE-2020-35758

An issue was discovered on Libre Wireless LS9 LS1.5/p7040 devices. There is a Authentication Bypass in the Web Interface. This interface does not properly restrict access to internal functionality. Despite presenting a password login page on first access, authentication is not required to access privileged functionality. As such, itโ€™s possible to directly access APIs that should not be exposed to an unauthenticated user.

Source: CVE-2020-35758

Exit mobile version