Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6wmh-r824-376w

Опубликовано: 31 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses information via redirection from the setup wizard. Authentication can be bypassed and a user may view information as Admin by manually browsing to the setup wizard and forcing it to redirect to the desired page.

Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses information via redirection from the setup wizard. Authentication can be bypassed and a user may view information as Admin by manually browsing to the setup wizard and forcing it to redirect to the desired page.

EPSS

Процентиль: 97%
0.41622
Средний

5.3 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 5.3
nvd
около 4 лет назад

Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses information via redirection from the setup wizard. Authentication can be bypassed and a user may view information as Admin by manually browsing to the setup wizard and forcing it to redirect to the desired page.

EPSS

Процентиль: 97%
0.41622
Средний

5.3 Medium

CVSS3

Дефекты

CWE-287