CVE-2018-13315

Incorrect access control in formPasswordSetup in TOTOLINK A3002RU version 1.0.8 allows attackers to change the admin user's password via an unauthenticated POST request.
Configurations

Configuration 1


Information

Published : 2018-11-26 11:29

Updated : 2018-12-20 03:54


NVD link : CVE-2018-13315

Mitre link : CVE-2018-13315

Products Affected
CWE