Improper Authentication Handling in WatchGuard AP Devices

Improper Authentication Handling in WatchGuard AP Devices

CVE-2018-10576 · MEDIUM Severity

AV:L/AC:L/AU:N/C:P/I:P/A:P

An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15. Improper authentication handling by the native Access Point web UI allows authentication using a local system account (instead of the dedicated web-only user).

Learn more about our Web App Pen Testing.