An issue was discovered on WyreStorm Apollo VX20 devices before 1.3.58. Remote attackers can discover cleartext credentials for the SoftAP (access point) Router /device/config using an HTTP GET request.
id: CVE-2024-25735
info:
name: WyreStorm Apollo VX20 - Information Disclosure
author: johnk3r
...