Auerswald COMpact 5500R 7.8A and 8.0B devices contain an unauthenticated endpoint ("https://192.168.1[.]2/about_state"), enabling the bad actor to gain backdoor access to a web interface that allows for resetting the administrator password.
id: CVE-2021-40859
info:
name: Auerswald COMpact 5500R 7.8A and 8.0B Devices Backdoor
author: p
...