Linksys EA6500 with firmware 1.1.28.147876 does not properly restrict access, which allows remote attackers to obtain sensitive information (clients and router configuration) via a request to /JNAP/.
2014-09-29T22:55:08.237
2025-04-12T10:46:40.837
Deferred
CVSSv2: 7.1 (HIGH)
AV:N/AC:M/Au:N/C:C/I:N/A:N
8.6
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linksys | ea6500_firmware | 1.1.28.147876 | Yes |
Hardware | linksys | ea6500 | - | Yes |