CVE-2026-27752
EUVD-2026-904127.02.2026, 18:16
SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 transmit authentication credentials over unencrypted HTTP, allowing attackers to capture credentials. An attacker positioned to observe network traffic between a user and the device can intercept credentials and reuse them to gain administrative access to the gateway.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sodola-network | sl902-swtgw124as_firmware | 𝑥 ≤ 200.1.20 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration