Description
The webserver utilizes basic authentication for its user login to the configuration interface. As encryption is disabled on port 80, it enables potential eavesdropping on user traffic, making it possible to intercept their credentials.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-46403 | The webserver utilizes basic authentication for its user login to the configuration interface. As encryption is disabled on port 80, it enables potential eavesdropping on user traffic, making it possible to intercept their credentials. |
References
| Link | Providers |
|---|---|
| https://advisories.ncsc.nl/advisory?id=NCSC-2024-0273 |
|
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: NCSC-NL
Published:
Updated: 2024-08-02T19:09:49.320Z
Reserved: 2023-09-05T10:14:50.217Z
Link: CVE-2023-41926
Updated: 2024-08-02T19:09:49.320Z
Status : Deferred
Published: 2024-07-02T08:15:04.773
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-41926
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD