Akuvox E11 Password Recovery Webpage Vulnerability

Akuvox E11 Password Recovery Webpage Vulnerability

CVE-2023-0352 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

The Akuvox E11 password recovery webpage can be accessed without authentication, and an attacker could download the device key file. An attacker could then use this page to reset the password back to the default.

Learn more about our Web App Pen Testing.