First published: Wed Dec 09 2020(Updated: )
An information disclosure vulnerability exists in RT-AC88U Download Master before 3.1.0.108. A direct access to /downloadmaster/dm_apply.cgi?action_mode=initial&download_type=General&special_cgi=get_language makes it possible to reach "unknown functionality" in a "known to be easy" manner via an unspecified "public exploit."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Rt-ac88u Firmware | <3.1.0.108 | |
Asus Rt-ac88u |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this information disclosure vulnerability is CVE-2020-29656.
The severity of CVE-2020-29656 is high, with a severity value of 7.5.
The Asus Rt-ac88u Firmware version up to and excluding 3.1.0.108 is affected by CVE-2020-29656.
The information disclosure vulnerability can be exploited by direct access to /downloadmaster/dm_apply.cgi?action_mode=initial&download_type=General&special_cgi=get_language.
No, the Asus Rt-ac88u device is not vulnerable to CVE-2020-29656.