SODOLA SL902-SWTGW124AS Authentication Bypass Vulnerability Allowing Unlimited Login Attempts
Vulnerability
An authentication bypass vulnerability has been identified in SODOLA SL902-SWTGW124AS firmware versions through 200.1.20. This vulnerability allows remote attackers to perform unlimited login attempts on the management interface, facilitating online password guessing attacks. The absence of account lockout or rate limiting measures could lead to unauthorized access to the device management interface.
Impact
Exploitation of this vulnerability could result in unauthorized access to the device management interface, allowing attackers to manipulate device settings or configurations.
Remediation
Users can upgrade to the latest firmware version to address this vulnerability. The firmware update for the SL902-SWTGW124AS model is available on the SODOLA website.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
