CVE-2017-14942

I

ntelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct request for cgi-bin/DownloadCfg/RouterCfm.cfg containing an admin:language=pt cookie.

References
Link Resource
http://whiteboyz.xyz/authentication-bypass-intelbras-wrn-150.html Exploit URL Repurposed
https://www.exploit-db.com/exploits/42916/ Exploit Third Party Advisory VDB Entry
http://whiteboyz.xyz/authentication-bypass-intelbras-wrn-150.html Exploit URL Repurposed
https://www.exploit-db.com/exploits/42916/ Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:intelbras:wrn_150_firmware:1.0.1:*:*:*:*:*:*:*
cpe:2.3:h:intelbras:wrn_150:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:13

Type Values Removed Values Added
References () http://whiteboyz.xyz/authentication-bypass-intelbras-wrn-150.html - Exploit, URL Repurposed () http://whiteboyz.xyz/authentication-bypass-intelbras-wrn-150.html - Exploit, URL Repurposed
References () https://www.exploit-db.com/exploits/42916/ - Exploit, Third Party Advisory, VDB Entry () https://www.exploit-db.com/exploits/42916/ - Exploit, Third Party Advisory, VDB Entry

Information

Published : 2017-09-30 01:29

Updated : 2025-04-20 01:37


NVD link : CVE-2017-14942

Mitre link : CVE-2017-14942

CVE.ORG link : CVE-2017-14942


JSON object : View

Products Affected
CWE
CWE-552

Files or Directories Accessible to External Parties