CVE-2018-13315

Publication date

2018-11-26 22:00:00

Family

mitre

State

PUBLISHED

Description

Incorrect access control in formPasswordSetup in TOTOLINK A3002RU version 1.0.8 allows attackers to change the admin users password via an unauthenticated POST request.