Inefficient Password Policy in InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870

Inefficient Password Policy in InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870

CVE-2021-38462 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 does not enforce an efficient password policy. This may allow an attacker with obtained user credentials to enumerate passwords and impersonate other application users and perform operations on their behalf.

Learn more about our Network Penetration Testing.