Password Reset Page Access Control Vulnerability in IP-COM EW9 V15.11.0.14(9732)

Password Reset Page Access Control Vulnerability in IP-COM EW9 V15.11.0.14(9732)

CVE-2022-43364 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

An access control issue in the password reset page of IP-COM EW9 V15.11.0.14(9732) allows unauthenticated attackers to arbitrarily change the admin password.

Learn more about our Web Application Penetration Testing UK.