Vulnerabilities (CVE)

Filtered by vendor Engeniustech Subscribe
Filtered by product Enh500
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-28371 1 Engeniustech 2 Enh500, Enh500 Firmware 2025-06-12 N/A N/A
EnGenius ENH500 AP 2T2R V3.0 FW3.7.22 is vulnerable to Incorrect Access Control via the password change function. The device fails to validate the current password, allowing an attacker to submit a password change request with an invalid current password and set a new password.