NuCom WR644GACV devices before STA006 allow an attacker to download the configuration file without credentials. By downloading this file, an attacker can access the admin password, WPA key, and any config information of the device.
References
Link | Resource |
---|---|
https://blog.nivel4.com/investigaciones/vulnerabilidad-en-los-dispositivos-nucom-wr644gacv/ | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2018-06-25T15:00:00
Updated: 2018-06-25T14:57:01
Reserved: 2018-03-17T00:00:00
Link: CVE-2018-8755
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-06-25T15:29:00.537
Modified: 2019-10-03T00:03:26.223
Link: CVE-2018-8755
JSON object: View
Redhat Information
No data.
CWE