TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 allow an attacker on the same network to bypass authentication via a web-administration request that lacks a password parameter.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Link | Tags |
---|---|
https://research.hisolutions.com/2020/05/critical-vulnerabilites-in-multiple-usb-network-servers/ | third party advisory broken link |