CVE-2023-49230
Peplink Balance Two before 8.4.0 - Unauthenticated Config Upload
Record summary
CVE-2023-49230 has a selected CVSS score of 8.8 (high); EIP currently links 1 Nuclei template.
Description
An issue was discovered in Peplink Balance Two before 8.4.0. A missing authorization check in captive portals allows attackers to modify the portals' configurations without prior authentication.
Exploitation context
Available material
- Nuclei templates
- 1
Nuclei templates
1ProjectDiscoveryHIGHPeplink Balance Two before 8.4.0 - Unauthenticated Config UploadCVSS 8.8
A vulnerability in Peplink Balance Two prior to version 8.4.0 allows unauthenticated attackers to modify captive portal configurations due to a missing authorization check. Specifically, attackers can upload files via /guest/portal_admin_upload.cgi, with the changes reflected at /guest/preview.cgi?portal_id=1.
Impact
Unauthenticated attackers can modify captive portal configurations and upload files, potentially enabling phishing attacks or system compromise.
Remediation
Upgrade Peplink Balance Two to version 8.4.0 or later.
Source: ProjectDiscovery