CVE-2017-8877: Infoleak
Published May 10, 2017
·Updated
ASUS RT-AC and RT-N devices with firmware through 3.0.0.4.380.7378 allow JSONP Information Disclosure such as the SSID.
Affected Software
2 affected components
ASUS Rt-ac1750 Firmware=3.0.0.4.380.7266
ASUS RT-AC1750
Event History
May 10, 2017
CVE Published
via MITRE·05:14 AM
Data Sourced
via MITRE·05:14 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-8877?
CVE-2017-8877 is considered to be a moderate severity vulnerability due to the potential for information disclosure.
2
How do I fix CVE-2017-8877?
To fix CVE-2017-8877, you should update your ASUS RT-AC* and RT-N* device firmware to the latest version provided by ASUS.
3
What does CVE-2017-8877 affect?
CVE-2017-8877 affects ASUS RT-AC* and RT-N* devices running firmware versions through 3.0.0.4.380.7378.
4
What information can be disclosed due to CVE-2017-8877?
CVE-2017-8877 allows for the disclosure of sensitive information such as the SSID of the network.
5
Is my ASUS RT-AC1750 firmware vulnerable to CVE-2017-8877?
Yes, the ASUS RT-AC1750 is vulnerable if it is running firmware version 3.0.0.4.380.7266 or earlier.