CVE-2019-6451

On SOYAL AR-727H and AR-829Ev5 devices, all CGI programs allow unauthenticated POST access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:soyal:ar-727h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:soyal:ar-727h:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:soyal:ar-829ev5_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:soyal:ar-829ev5:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:46

Type Values Removed Values Added
References () http://www.nccst.nat.gov.tw - Broken Link, Third Party Advisory () http://www.nccst.nat.gov.tw - Broken Link, Third Party Advisory
References () http://www.soyal.com/epaper/e-paper-en-117.html - Broken Link () http://www.soyal.com/epaper/e-paper-en-117.html - Broken Link
References () https://github.com/cvereveal/CVEs/tree/master/CVE-2019-6451 - Exploit, Third Party Advisory () https://github.com/cvereveal/CVEs/tree/master/CVE-2019-6451 - Exploit, Third Party Advisory
References () https://www.soyal.com.tw/cve-2019-6451/ - Vendor Advisory () https://www.soyal.com.tw/cve-2019-6451/ - Vendor Advisory
References () https://www.soyal.com/exhibition/cve-2019-6451/ - Broken Link () https://www.soyal.com/exhibition/cve-2019-6451/ - Broken Link

Information

Published : 2019-06-06 19:29

Updated : 2024-11-21 04:46


NVD link : CVE-2019-6451

Mitre link : CVE-2019-6451

CVE.ORG link : CVE-2019-6451


JSON object : View

Products Affected

soyal

  • ar-829ev5
  • ar-727h_firmware
  • ar-727h
  • ar-829ev5_firmware
CWE
CWE-306

Missing Authentication for Critical Function