Vulnerabilities
Vulnerable Software
Yeastar:  Security Vulnerabilities
In Yeastar N412 and N824 Configuration Panel 42.x and 45.x, an unauthenticated attacker can create backup file and download it, revealing admin hash, allowing, once cracked, to login inside the Configuration Panel, otherwise, replacing the hash in the archive and restoring it on the device which will change admin password granting access to the device.
CVSS Score
7.5
EPSS Score
0.001
Published
2023-01-20
Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal. An authenticated user can decrypt firmware and can read sensitive information, such as a password or decryption key.
CVSS Score
6.5
EPSS Score
0.571
Published
2021-02-19


Contact Us

Shodan ® - All rights reserved