EntryPass N5200 Active Network Control Panel allows remote attackers to read device memory and obtain the administrator username and password via a URL starting with an ASCII character o through z or A through D, different vectors than CVE-2014-8868.
References
Configurations
History
21 Nov 2024, 02:20
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/fulldisclosure/2014/Dec/2 - Exploit | |
References | () http://www.securityfocus.com/archive/1/534128/100/0/threaded - | |
References | () https://www.redteam-pentesting.de/advisories/rt-sa-2014-011 - Exploit |
Information
Published : 2014-12-07 21:59
Updated : 2024-11-21 02:20
NVD link : CVE-2014-9303
Mitre link : CVE-2014-9303
CVE.ORG link : CVE-2014-9303
JSON object : View
Products Affected
entrypass
- n5200_active_network_control_panel
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor