First published: Fri Jan 17 2020(Updated: )
Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Intelbras Wrn 240 Firmware | =2.0.0 | |
Intelbras Wrn 240 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19142 is a vulnerability in Intelbras WRN240 devices that allows unauthorized users to replace the firmware without authentication.
CVE-2019-19142 is classified as high severity with a CVSS score of 7.5.
To exploit CVE-2019-19142, you can send a POST request to the incoming/Firmware.cfg URI without authentication.
If your Intelbras WRN240 device has firmware version 2.0.0, it is affected by CVE-2019-19142.
To mitigate CVE-2019-19142, update your Intelbras WRN240 device's firmware to a version that fixes the vulnerability.