First published: Wed Jan 31 2018(Updated: )
Password are stored in plaintext in nvram in the HTTPd server in all current versions (<= 3.0.0.4.380.7743) of Asus asuswrt.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Asus asuswrt | <=3.0.0.4.380.7743 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2017-15656.
The severity of CVE-2017-15656 is high with a severity value of 8.8.
The affected software is Asus asuswrt version <= 3.0.0.4.380.7743.
Passwords are stored in plaintext in nvram in the HTTPd server.
There is no official fix available for CVE-2017-15656. It is recommended to update to a patched version of the software if one becomes available, or consider using alternate solutions.