An improper authentication vulnerability in the "social_login.cgi" CGI program in Zyxel WAX650S firmware versions through 7.10(ABRM.4)C0 could allow an attacker on the WLAN to bypass captive portal authentication.
| Vendor | Product | Versions |
|---|---|---|
| zyxel | wax650s firmware | <= 7.10(ABRM.4)C0 |