CVE-2023-50919

An issue was discovered on GL.iNet devices before version 4.5.0. There is an NGINX authentication bypass via Lua string pattern matching. This affects A1300 4.4.6, AX1800 4.4.6, AXT1800 4.4.6, MT3000 4.4.6, MT2500 4.4.6, MT6000 4.5.0, MT1300 4.3.7, MT300N-V2 4.3.7, AR750S 4.3.7, AR750 4.3.7, AR300M 4.3.7, and B1300 4.3.7.
CVSS

No CVSS.

Configurations

No configuration.

Information

Published : 2024-01-12 08:15

Updated : 2024-01-12 13:47


NVD link : CVE-2023-50919

Mitre link : CVE-2023-50919


JSON object : View

Products Affected

No product.

CWE

No CWE.