Authentication bypass using an alternate path or channel in Roxy-WI - CVE-2022-31125
Published: July 6, 2022 / Updated: April 20, 2026
Roxy-WI
Roxy-WI
Description
The vulnerability allows a remote attacker to bypass authentication and access admin functionality.
The vulnerability exists due to improper authentication in critical functions when handling a specially crafted HTTP request. A remote attacker can send a specially crafted HTTP request to bypass authentication and access admin functionality.