An authentication bypass vulnerability in the authorization mechanism of Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 allows unauthorized attackers to perform Administrative actions using service accounts.
The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Easyweb | Weintek | 2.1.53 (including) | 2.1.53 (including) |
| Cmt-3072xh2_firmware | Weintek | 20231011 (including) | 20231011 (including) |