Contec FXA3200 version 1.13.00 and under suffers from Insecure Permissions in the Wireless LAN Manager interface which allows malicious actors to execute Linux commands with root privilege via a hidden web page (/usr/www/ja/mnt_cmd.cgi).
2022-09-26T11:15:09.483
2025-05-21T16:15:26.243
Modified
CVSSv3.1: 8.0 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | contec | fxa3000_firmware | ≤ 1.13.00 | Yes |
Hardware | contec | fxa3000 | - | No |
Operating System | contec | fxa3020_firmware | ≤ 1.13.00 | Yes |
Hardware | contec | fxa3020 | - | No |
Operating System | contec | fxa3200_firmware | ≤ 1.13.00 | Yes |
Hardware | contec | fxa3200 | - | No |
Operating System | contec | fxa2000_firmware | < 1.39.00 | Yes |
Hardware | contec | fxa2000 | - | No |