CVE-2020-29656: High severity asus rt-ac88u firmware vulnerability
An information disclosure vulnerability exists in RT-AC88U Download Master before 3.1.0.108. A direct access to /downloadmaster/dmapply.cgi?actionmode=initial&downloadtype=General&specialcgi=getlanguage makes it possible to reach "unknown functionality" in a "known to be easy" manner via an unspecified "public exploit."
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this information disclosure vulnerability?
The vulnerability ID for this information disclosure vulnerability is CVE-2020-29656.
What is the severity of CVE-2020-29656?
The severity of CVE-2020-29656 is high, with a severity value of 7.5.
Which software version is affected by CVE-2020-29656?
The Asus Rt-ac88u Firmware version up to and excluding 3.1.0.108 is affected by CVE-2020-29656.
How can the information disclosure vulnerability be exploited?
The information disclosure vulnerability can be exploited by direct access to /downloadmaster/dm_apply.cgi?action_mode=initial&download_type=General&special_cgi=get_language.
Is the Asus Rt-ac88u device vulnerable to CVE-2020-29656?
No, the Asus Rt-ac88u device is not vulnerable to CVE-2020-29656.