CVE-2017-14942: Critical severity intelbras wrn 150 firmware vulnerability
Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct request for cgi-bin/DownloadCfg/RouterCfm.cfg containing an admin:language=pt cookie.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-14942?
CVE-2017-14942 has been classified with a high severity due to its ability to allow remote attackers to bypass authentication.
How do I fix CVE-2017-14942?
To mitigate CVE-2017-14942, users should update their Intelbras WRN 150 firmware to a version later than 1.0.1 that addresses this vulnerability.
What type of attack is associated with CVE-2017-14942?
CVE-2017-14942 is associated with an authentication bypass attack, allowing unauthorized access to configuration files.
Which Intelbras WRN 150 firmware version is vulnerable to CVE-2017-14942?
Only Intelbras WRN 150 firmware version 1.0.1 is known to be vulnerable to CVE-2017-14942.
Can CVE-2017-14942 be exploited remotely?
Yes, CVE-2017-14942 can be exploited remotely by attackers to read sensitive configuration files.