CVE-2019-3916: High severity verizon fios quantum gateway g1100 firmware vulnerability
Information disclosure vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an remote, unauthenticated attacker to retrieve the value of the password salt by simply requesting an API URL in a web browser (e.g. /api).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-3916?
CVE-2019-3916 is classified as a high severity vulnerability due to its potential for information disclosure.
How does CVE-2019-3916 affect the Verizon Fios Quantum Gateway G1100?
CVE-2019-3916 allows remote, unauthenticated attackers to retrieve the password salt by accessing a specific API URL.
What versions of firmware are vulnerable to CVE-2019-3916?
CVE-2019-3916 specifically affects Verizon Fios Quantum Gateway G1100 firmware version 02.01.00.05.
How do I fix CVE-2019-3916?
To mitigate CVE-2019-3916, users should update their Verizon Fios Quantum Gateway G1100 to a firmware version that is not vulnerable.
What should I do if my device is affected by CVE-2019-3916?
If your device is affected by CVE-2019-3916, you should apply the appropriate firmware update immediately to protect against unauthorized access.