Korenix CSRF / Backdoor Accounts / Command Injection / Missing Authentication
Posted by deepcore on June 1, 2021 – 10:19 pm
Multiple Korenix products are affected by unauthenticated device administration, backdoor accounts, cross site request forgery, unauthenticated tftp actions, and command injection vulnerabilities. Products affected include JetNet 5428G-20SFP, JetNet 5810G, JetNet 4706F, JetNet 4706, JetNet 4706, JetNet 4510, JetNet 5010, JetNet 5310, and JetNet 6095.
Post a reply
You must be logged in to post a comment.