CVE-2022-25215

Improper access control on the LocalMACConfig.asp interface allows an unauthenticated remote attacker to add (or remove) client MAC addresses to (or from) a list of banned hosts. Clients with those MAC addresses are then prevented from accessing either the WAN or the router itself.
References
Link Resource
https://www.tenable.com/security/research/tra-2022-01 Exploit Third Party Advisory
Configurations

Configuration 1


Information

Published : 2022-03-10 05:47

Updated : 2022-03-17 07:25


NVD link : CVE-2022-25215

Mitre link : CVE-2022-25215

Products Affected
No products.
CWE