Описание
IP-COM EW9 V15.11.0.14(9732) allows unauthenticated attackers to access sensitive information via the checkLoginUser, ate, telnet, version, setDebugCfg, and boot interfaces.
Ссылки
- https://github.com/splashsc/IOT_Vulnerability_Discovery/blob/main/ip-com/4_information_disclosure.mdExploitThird Party Advisory
- https://github.com/splashsc/IOT_Vulnerability_Discovery/blob/main/ip-com/4_information_disclosure.mdExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:o:ip-com:ew9_firmware:15.11.0.14:*:*:*:*:*:*:*
cpe:2.3:h:ip-com:ew9:-:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00549
Низкий
7.5 High
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
IP-COM EW9 V15.11.0.14(9732) allows unauthenticated attackers to access sensitive information via the checkLoginUser, ate, telnet, version, setDebugCfg, and boot interfaces.
EPSS
Процентиль: 67%
0.00549
Низкий
7.5 High
CVSS3
Дефекты
NVD-CWE-noinfo