Exposure of Sensitive Information (CWE-200) in LWEB802 browser localStorage in Loytec LWEB-802 before 5.0.8 on all platforms allows an unauthenticated remote attacker to leak stored management credentials via a crafted link.
Update to LWEB-802 version 5.0.8.