CVE-2014-7993: Infoleak
Cisco-Meraki MS, MR, and MX devices with firmware before 2014-09-24 allow remote attackers to obtain sensitive credential information by leveraging unspecified HTTP handler access on the local network, aka Cisco-Meraki defect ID 00302012.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-7993?
CVE-2014-7993 is considered a medium severity vulnerability due to its potential to expose sensitive credential information.
How do I fix CVE-2014-7993?
To fix CVE-2014-7993, upgrade your Cisco Meraki MS, MR, or MX devices to firmware version 2014-09-24 or later.
What devices are affected by CVE-2014-7993?
CVE-2014-7993 affects Cisco Meraki MS, MR, and MX devices running firmware versions prior to 2014-09-24.
Can CVE-2014-7993 be exploited remotely?
Yes, CVE-2014-7993 can be exploited by remote attackers who have access to the local network.
What type of information can be exposed by CVE-2014-7993?
CVE-2014-7993 can allow attackers to obtain sensitive credential information from the affected devices.