CyberRota Analysis
AI-GeneratedThe Ebyte gateway's vendor configuration utility is vulnerable due to a lack of authentication, allowing unauthenticated attackers on the same network to perform critical administrative actions, such as rebooting the device or restoring factory settings. This could lead to significant service disruptions and loss of configuration data. Organizations using Ebyte gateways should prioritize addressing this vulnerability to mitigate potential operational impacts.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Ebyte gateway product's vendor configuration utility does not require authentication before allowing certain disruptive administrative actions when default credentials remain configured. An unauthenticated attacker on the adjacent network could reboot the device or restore factory settings, resulting in a loss of configuration and service availability.