CVE-2021-3017: High severity Intelbras Win 300 Firmware vulnerability
The web interface on Intelbras WIN 300 and WRN 342 devices through 2021-01-04 allows remote attackers to discover credentials by reading the defwirelesspassword line in the HTML source code.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-3017.
What is the severity of CVE-2021-3017?
The severity of CVE-2021-3017 is high with a severity value of 7.5.
Which devices are affected by CVE-2021-3017?
Intelbras WIN 300 and WRN 342 devices with firmware versions up to and including 2021-01-04 are affected by CVE-2021-3017.
How can remote attackers exploit CVE-2021-3017?
Remote attackers can exploit CVE-2021-3017 by reading the def_wirelesspassword line in the HTML source code of the web interface on Intelbras WIN 300 and WRN 342 devices.
Are there any references for CVE-2021-3017?
Yes, you can find references for CVE-2021-3017 at the following links: https://pastebin.com/cTYTf0Yn and https://www.intelbras.com/pt-br/ajuda-download/faq/roteador-wireless-veloz-wrn-342