CVE-2020-23055: Lancom-Systems Lcos
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the /authen/start/ module via the userid and password parameters.
Affected products
- Lancom-Systems Lcos: version 10.12 only; version 10.20 only; version 10.32 only
Published 2021-10-22. Last modified 2026-06-17.