CVE-2019-16313

ifw8 Router ROM v4.31 allows credential disclosure by reading the action/usermanager.htm HTML source code.
References
Link Resource
http://www.iwantacve.cn/index.php/archives/311/ Exploit Third Party Advisory
http://www.iwantacve.cn/index.php/archives/311/ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ifw8:fr6_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr6:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ifw8:fr8_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr8:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:ifw8:fr5_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr5:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:ifw8:fr5-e_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr5-e:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:ifw8:fr6-s_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr6-s:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:30

Type Values Removed Values Added
References () http://www.iwantacve.cn/index.php/archives/311/ - Exploit, Third Party Advisory () http://www.iwantacve.cn/index.php/archives/311/ - Exploit, Third Party Advisory

Information

Published : 2019-09-14 16:15

Updated : 2024-11-21 04:30


NVD link : CVE-2019-16313

Mitre link : CVE-2019-16313

CVE.ORG link : CVE-2019-16313


JSON object : View

Products Affected

ifw8

  • fr6
  • fr8_firmware
  • fr5
  • fr6-s
  • fr8
  • fr6-s_firmware
  • fr5-e
  • fr5_firmware
  • fr5-e_firmware
  • fr6_firmware
CWE
CWE-798

Use of Hard-coded Credentials