Sploitus

CVE-2023-38324

No indexed exploits for CVE-2023-38324 yet

An issue was discovered in OpenNDS before 10.1.2. It allows users to skip the splash page sequence (and directly authenticate) when it is using the default FAS key and OpenNDS is configured as FAS. Affected OpenNDS Captive Portal before version 10.1.2 fixed in OpenWrt master, OpenWrt 23.05 and OpenWrt 22.03 on 28. August 2023 by updating OpenNDS to version 10.1.3.

Opennds Captive Portal
< 10.1.2
Fix
Available
CVSS 3.1
5.3 MEDIUM
EPSS
0.7% (49th percentile)
NVD status
Modified
Published
2023-11-17
CVE-2023-38324 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2023-38324 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2023-38324 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.