CVE-2023-24215
the affected product
Incorrect access control in the /uci/get/ endpoint of NOVUS AirGate 4G firmware v1.1.16 allows unauthenticated attackers to obtain administrator credentials via a crafted POST request.
- CVSS
- 9.1
- EPSS
- 0.24% 15.1% percentile
- CISA KEV
- Not listed
- Published
- 2026.05.19