Record summary

CVE-2023-49230 has a selected CVSS score of 8.8 (high); EIP currently links 1 Nuclei template.

Description

An issue was discovered in Peplink Balance Two before 8.4.0. A missing authorization check in captive portals allows attackers to modify the portals' configurations without prior authentication.

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

Nuclei templates

1
ProjectDiscoveryHIGHPeplink Balance Two before 8.4.0 - Unauthenticated Config UploadCVSS 8.8

A vulnerability in Peplink Balance Two prior to version 8.4.0 allows unauthenticated attackers to modify captive portal configurations due to a missing authorization check. Specifically, attackers can upload files via /guest/portal_admin_upload.cgi, with the changes reflected at /guest/preview.cgi?portal_id=1.

Impact

Unauthenticated attackers can modify captive portal configurations and upload files, potentially enabling phishing attacks or system compromise.

Remediation

Upgrade Peplink Balance Two to version 8.4.0 or later.

WeaknessesCWE-862
Authorssrilakivarma
Template tagscvecve2023peplinkintrusivefile-uploadvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CPE: cpe:2.3:o:peplink:balance_two_firmware:*:*:*:*:*:*:*:*
Shodan: html:"PEPLINK"

Source: ProjectDiscovery

References

3