COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 and before is vulnerable to Account takeover. Anyone can reset the password of the admin accounts.
The product contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak.