The web interface on Intelbras WIN 300 and WRN 342 devices through 2021-01-04 allows remote attackers to discover credentials by reading the def_wirelesspassword line in the HTML source code.
2021-04-14T18:15:14.940
2024-11-21T06:20:45.510
Modified
CVSSv3.1: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | intelbras | win_300_firmware | ≤ 2021-01-04 | Yes |
| Hardware | intelbras | win_300 | - | No |
| Operating System | intelbras | wrn_342_firmware | ≤ 2021-01-04 | Yes |
| Hardware | intelbras | wrn_342 | - | No |