What the vulnerability does

01Description

Acemanager in ALEOS before version 4.16 allows a user with valid credentials to reconfigure the device to expose the ACEManager credentials on the pre-login status page.

Key dates

02Disclosure timeline

February 10, 2023 CVE published
March 24, 2025 Record updated