Korenix Technology JetWave CSRF / Command Injection / Missing Authentication
Posted by deepcore on February 5, 2022 – 1:51 pm
Korenix Technology JetWave products JetWave 2212X, JetWave 2212S, JetWave 2212G, JetWave 2311, and JetWave 3220 suffer from unauthenticated device administration, cross site request forgery, multiple command injection, and unauthenticated tftp action vulnerabilities.
Post a reply
You must be logged in to post a comment.