CVE-2017-14942

Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct request for cgi-bin/DownloadCfg/RouterCfm.cfg containing an admin:language=pt cookie.

Published : 2017-09-30 01:29 Updated : 2019-10-03 00:03

7.5
CVSS Score More info
Score 7.5 / 10
7.5
Vendor Product Version URI
Intelbras Wrn 150 Firmware 1.0.1 cpe:/o:intelbras:wrn_150_firmware:1.0.1
  1. Intelbras (1) Search CVE
    1. Wrn 150 Firmware (1) Search CVE
      1. 1.0.1

CWE

ID Name Description Links
CWE-552 Files or Directories Accessible to External Parties Files or directories are accessible in the environment that should not be. CVE

History of changes

Date Event
2019-10-03 00:03
2017-10-11 14:30
2017-09-30 01:29

New CVE