EIP-2026-101520
PRE-CVEAlpha Networks ADSL2/2+ Wireless Router ASL-26555 - Password Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101520. PoCs published by Alberto Ortega.
AI-analyzed exploit summary This exploit discloses the administrator credentials of Alpha Networks ADSL2/2+ Wireless Router ASL-26555 by accessing an unauthenticated API endpoint. The API endpoint `/APIS/returnJSON.htm` returns the username and password in JSON format, allowing unauthorized access to the device's web panel.
Description
Alpha Networks ADSL2/2+ Wireless Router ASL-26555 - Password Disclosure
Exploits (1)
This exploit discloses the administrator credentials of Alpha Networks ADSL2/2+ Wireless Router ASL-26555 by accessing an unauthenticated API endpoint. The API endpoint `/APIS/returnJSON.htm` returns the username and password in JSON format, allowing unauthorized access to the device's web panel.