Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-41351


Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of authentication bypass, which allows an unauthenticated remote attacker to bypass the authentication mechanism to log in to the device by an alternative URL. This makes it possible for unauthenticated remote attackers to log in as any existing users, such as an administrator, to perform arbitrary system operations or disrupt service.


Published

2023-11-03T06:15:07.107

Last Modified

2024-11-21T08:21:07.877

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-288
  • Type: Primary
    CWE-306

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System nokia g-040w-q_firmware g040wqr201207 Yes
Hardware nokia g-040w-q - No

References