Логотип exploitDog
bind:CVE-2025-3758
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-3758

Количество 2

Количество 2

nvd логотип

CVE-2025-3758

9 месяцев назад

WF2220 exposes endpoint /cgi-bin-igd/netcore_get.cgi that returns configuration of the device to unauthorized users. Returned configuration includes cleartext password. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS: Низкий
github логотип

GHSA-q5pr-32h7-qgvw

9 месяцев назад

WF2220 exposes endpoint /cgi-bin-igd/netcore_get.cgi that returns configuration of the device to unauthorized users. Returned configuration includes cleartext password. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-3758

WF2220 exposes endpoint /cgi-bin-igd/netcore_get.cgi that returns configuration of the device to unauthorized users. Returned configuration includes cleartext password. The vendor was contacted early about this disclosure but did not respond in any way.

0%
Низкий
9 месяцев назад
github логотип
GHSA-q5pr-32h7-qgvw

WF2220 exposes endpoint /cgi-bin-igd/netcore_get.cgi that returns configuration of the device to unauthorized users. Returned configuration includes cleartext password. The vendor was contacted early about this disclosure but did not respond in any way.

0%
Низкий
9 месяцев назад

Уязвимостей на страницу