CVE-2022-4874

Authentication bypass in Netcomm router models NF20MESH, NF20, and NL1902 allows an unauthenticated user to access content. In order to serve static content, the application performs a check for the existence of specific characters in the URL (.css, .png etc). If it exists, it performs a "fake login" to give the request an active session to load the file and not redirect to the login page.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:netcommwireless:nf20_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netcommwireless:nf20:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:netcommwireless:nf20mesh_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netcommwireless:nf20mesh:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:netcommwireless:nl1902_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netcommwireless:nl1902:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:36

Type Values Removed Values Added
Summary
  • (es) La omisión de autenticación en los modelos de router Netcomm NF20MESH, NF20 y NL1902 permite que un usuario no autenticado acceda al contenido. Para ofrecer contenido estático, la aplicación verifica la existencia de caracteres específicos en la URL (.css, .png, etc.). Si existe, realiza un "inicio de sesión falso" para darle a la solicitud una sesión activa para cargar el archivo y no redirigir a la página de inicio de sesión.
References () https://github.com/scarvell/advisories/blob/main/2022_netcomm_nf20mesh_unauth_rce.md - Exploit, Third Party Advisory () https://github.com/scarvell/advisories/blob/main/2022_netcomm_nf20mesh_unauth_rce.md - Exploit, Third Party Advisory

Information

Published : 2023-01-11 21:15

Updated : 2024-11-21 07:36


NVD link : CVE-2022-4874

Mitre link : CVE-2022-4874

CVE.ORG link : CVE-2022-4874


JSON object : View

Products Affected

netcommwireless

  • nf20_firmware
  • nf20mesh_firmware
  • nf20
  • nl1902
  • nl1902_firmware
  • nf20mesh
CWE
CWE-287

Improper Authentication