PT-2026-80801 · Kaon · Pg5298B+1
CVSS v4.0
7.1
High
| Vector | AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
KAON PG5298A versions prior to 3.0.82
KAON PG5298B versions prior to 4.0.82
Description
Firmware in these routers allows an unauthenticated user to query a specific endpoint to acquire sensitive information, including the password for the administrative portal.
Recommendations
Update KAON PG5298A to version 3.0.82.
Update KAON PG5298B to version 4.0.82.
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Pg5298A
Pg5298B