CVE-2019-19007: Infoleak
Published Dec 5, 2019
·Updated
Intelbras IWR 3000N 1.8.7 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled, a related issue to CVE-2019-17600.
Affected Software
2 affected components
Intelbras Iwr 3000n Firmware=1.8.7
Intelbras IWR 3000N
Event History
Dec 5, 2019
CVE Published
via MITRE·03:28 PM
Data Sourced
via MITRE·03:28 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2019-19007.
2
What is the severity level of CVE-2019-19007?
The severity level of CVE-2019-19007 is critical.
3
How does CVE-2019-19007 affect Intelbras IWR 3000N devices?
CVE-2019-19007 allows disclosure of the administrator login name and password on Intelbras IWR 3000N devices.
4
How can I check if my Intelbras IWR 3000N device is affected by CVE-2019-19007?
You can check if your Intelbras IWR 3000N device is affected by CVE-2019-19007 by verifying if the firmware version is 1.8.7.
5
Is there a fix available for CVE-2019-19007?
Yes, you can mitigate CVE-2019-19007 by updating the firmware of your Intelbras IWR 3000N device to a version that addresses the vulnerability.