7.5
CVSSv3

CVE-2017-5892

Published: 10/05/2017 Updated: 16/05/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

ASUS RT-AC* and RT-N* devices with firmware prior to 3.0.0.4.380.7378 allow JSONP Information Disclosure such as a network map.

Vulnerable Product Search on Vulmon Subscribe to Product

asus rt-ac1750_firmware 3.0.0.4.380.7266

Exploits

ASUS routers suffer from cross site request forgery and information disclosure vulnerabilities Versions affected include RT-AC55U, RT-AC56R, RT-AC56S, RT-AC56U, RT-AC66U, RT-AC88U, RT-AC66R, RT-AC66U, RT-AC66W, RT-AC68W, RT-AC68P, RT-AC68R, RT-AC68U, RT-AC87R, RT-AC87U, RT-AC51U, RT-AC53U, RT-AC1900P, RT-AC3100, RT-AC3200, RT-AC5300, RT-N11P, RT-N ...