Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m494-73pw-6cw9

Опубликовано: 10 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

Intelbras IWR 3000N 1.9.8 exposes the Wi-Fi password in plaintext via the /api/wireless endpoint. Any unauthenticated user on the local network can directly obtain the Wi-Fi network password by querying this endpoint.

Intelbras IWR 3000N 1.9.8 exposes the Wi-Fi password in plaintext via the /api/wireless endpoint. Any unauthenticated user on the local network can directly obtain the Wi-Fi network password by querying this endpoint.

EPSS

Процентиль: 23%
0.00075
Низкий

8.4 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 8.4
nvd
5 месяцев назад

Intelbras IWR 3000N 1.9.8 exposes the Wi-Fi password in plaintext via the /api/wireless endpoint. Any unauthenticated user on the local network can directly obtain the Wi-Fi network password by querying this endpoint.

EPSS

Процентиль: 23%
0.00075
Низкий

8.4 High

CVSS3

Дефекты

CWE-200