Description
Exposure of private personal information to an unauthorized actor, Insufficiently Protected Credentials vulnerability in Digital Operations Services Inc. WifiBurada allows Authentication Bypass. This issue affects WifiBurada: through 21052026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Problem types
CWE-359 Exposure of private personal information to an unauthorized actor
CWE-522 Insufficiently Protected Credentials
Product status
Any version
Credits
Ahmed Resül MERİÇ
Mustafa Anıl YILDIRIM
References
siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0284