Security Advisory

CVE-2022-25215

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-03-07 21:53:11
Last updated 2024-08-03 04:36:06
Assigner tenable
CVSS score not scored
State PUBLISHED

Description

Improper access control on the LocalMACConfig.asp interface allows an unauthenticated remote attacker to add (or remove) client MAC addresses to (or from) a list of banned hosts. Clients with those MAC addresses are then prevented from accessing either the WAN or the router itself.