CVE-2020-17466

CRITICAL

Turcom TRCwifiZone < 2020-08-10 - Authentication Bypass via 302 Redirect Ignore

Title source: llm
STIX 2.1

Description

Turcom TRCwifiZone through 2020-08-10 allows authentication bypass by visiting manage/control.php and ignoring 302 Redirect responses.

References (2)

Core 2
Core References
Exploit, Third Party Advisory x_refsource_misc
https://cxsecurity.com/issue/WLB-2020080046

Scores

CVSS v3 9.8
EPSS 0.0147
EPSS Percentile 70.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-670
Status published
Products (1)
turcom/trcwifizone < 2020-08-10
Published Aug 11, 2020
Tracked Since Feb 18, 2026