CVE detail
CVE-2020-8798 — CVE-2020-8798
Published 2020-04-23 · Modified 2026-06-17 · Vendor juplink · Product rx4-1500_firmware · Source nvd
MEDIUM
severity
CVSS-derived band
0.0040
EPSS probability
exploitation probability, 30d
33.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
httpd in Juplink RX4-1500 v1.0.3-v1.0.5 allows remote attackers to change or access router settings by connecting to the unauthenticated setup3.htm endpoint from the local network.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References