← Back

CVE-2018-10576

nvd nist
Published: Apr 30, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15. Improper authentication handling by the native Access Point web UI allows authentication using a local system account (instead of the dedicated web-only user).

Affected (3)

3 products
Ap200 Firmware
Ap102 Firmware
Ap100 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.2.9.15
Running on/withPlatform Versions
Watchguard
Ap200
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.2.9.15
Running on/withPlatform Versions
Watchguard
Ap102
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.2.9.15
Running on/withPlatform Versions
Watchguard
Ap100
All versions

References (8)

Timeline

No history available yet.