CVE-2020-23648: ASUS Rt-n12e Firmware

High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.

Asus RT-N12E 2.0.0.39 is affected by an incorrect access control vulnerability. Through system.asp / start_apply.htm, an attacker can change the administrator password without any authentication.

Affected products

  • ASUS Rt-n12e Firmware: version 2.0.0.39 only

Published 2022-10-19. Last modified 2026-06-17.