CVE-2018-12455: Critical severity intelbras nplug firmware vulnerability
Published Oct 10, 2018
·Updated
Intelbras NPLUG 1.0.0.14 wireless repeater devices have a critical vulnerability that allows an attacker to authenticate in the web interface just by using "admin:" as the name of a cookie.
Affected Software
2 affected components
Intelbras Nplug Firmware=1.0.0.14
Intelbras NPLUG
Event History
Oct 10, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-12455?
CVE-2018-12455 is a critical vulnerability found in Intelbras NPLUG 1.0.0.14 wireless repeater devices.
2
How does the vulnerability in Intelbras NPLUG 1.0.0.14 work?
The vulnerability allows an attacker to authenticate in the web interface just by using "admin:" as the name of a cookie.
3
What is the severity of CVE-2018-12455?
The severity of CVE-2018-12455 is critical, with a severity value of 8.1.
4
What software versions of Intelbras NPLUG are affected?
The affected software version is 1.0.0.14 of Intelbras NPLUG.
5
How can I fix the vulnerability in Intelbras NPLUG 1.0.0.14?
To fix the vulnerability, it is recommended to update the firmware of the Intelbras NPLUG device to a secure version.