SODOLA SL902-SWTGW124AS Authentication Bypass Vulnerability Allowing Unlimited Login Attempts

Vulnerability

An authentication bypass vulnerability has been identified in SODOLA SL902-SWTGW124AS firmware versions through 200.1.20. This vulnerability allows remote attackers to perform unlimited login attempts on the management interface, facilitating online password guessing attacks. The absence of account lockout or rate limiting measures could lead to unauthorized access to the device management interface.

Impact

Exploitation of this vulnerability could result in unauthorized access to the device management interface, allowing attackers to manipulate device settings or configurations.

Remediation

Users can upgrade to the latest firmware version to address this vulnerability. The firmware update for the SL902-SWTGW124AS model is available on the SODOLA website.

Added: Feb 27, 2026, 6:24 PM
Updated: Feb 27, 2026, 6:24 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.4
remediation
0.0
relevance
3.3
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.