Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-3758

Опубликовано: 08 мая 2025
Источник: nvd
EPSS Низкий

Описание

WF2220 exposes endpoint /cgi-bin-igd/netcore_get.cgi that returns configuration of the device to unauthorized users. Returned configuration includes cleartext password. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 10%
0.00036
Низкий

Дефекты

CWE-256

Связанные уязвимости

github
9 месяцев назад

WF2220 exposes endpoint /cgi-bin-igd/netcore_get.cgi that returns configuration of the device to unauthorized users. Returned configuration includes cleartext password. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 10%
0.00036
Низкий

Дефекты

CWE-256