CVE-2023-41030: Juplink RX4-1500 Firmware

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Hard-coded credentials in Juplink RX4-1500 versions V1.0.2 through V1.0.5 allow unauthenticated attackers to log in to the web interface or telnet service as the 'user' user.

Affected products

  • Juplink RX4-1500 Firmware: from 1.0.2, up to and including 1.0.5

Published 2023-09-18. Last modified 2026-06-17.