Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jqx8-f6x9-hm34

Опубликовано: 23 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.1
CVSS3: 6.5

Описание

Shenzhen Tenda F3 Wireless Router firmware V12.01.01.55_multi contains a sensitive information exposure vulnerability in the configuration download functionality. The configuration download response includes the router password and administrative password in plaintext. The endpoint also omits appropriate Cache-Control directives, which can allow the response to be stored in client-side caches and recovered by other local users or processes with access to cached browser data.

Shenzhen Tenda F3 Wireless Router firmware V12.01.01.55_multi contains a sensitive information exposure vulnerability in the configuration download functionality. The configuration download response includes the router password and administrative password in plaintext. The endpoint also omits appropriate Cache-Control directives, which can allow the response to be stored in client-side caches and recovered by other local users or processes with access to cached browser data.

EPSS

Процентиль: 14%
0.00046
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-201

Связанные уязвимости

CVSS3: 6.5
nvd
3 месяца назад

Shenzhen Tenda F3 Wireless Router firmware V12.01.01.55_multi contains a sensitive information exposure vulnerability in the configuration download functionality. The configuration download response includes the router password and administrative password in plaintext. The endpoint also omits appropriate Cache-Control directives, which can allow the response to be stored in client-side caches and recovered by other local users or processes with access to cached browser data.

CVSS3: 6.5
fstec
3 месяца назад

Уязвимость микропрограммного обеспечения маршрутизатора Tenda F3, связанная с раскрытием информации при передаче данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 14%
0.00046
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-201