9.8
CVSSv3

CVE-2018-20377

Published: 23/12/2018 Updated: 03/10/2019
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 891
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Orange Livebox 00.96.320S devices allow remote malicious users to discover Wi-Fi credentials via /get_getnetworkconf.cgi on port 8080, leading to full control if the admin password equals the Wi-Fi password or has the default admin value. This is related to Firmware 01.11.2017-11:43:44, Boot v0.70.03, Modem 5.4.1.10.1.1A, Hardware 02, and Arcadyan ARV7519RW22-A-L T VR9 1.2.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

orange arv7519rw22_livebox_2.1_firmware 00.96.217

orange arv7519rw22_livebox_2.1_firmware 00.96.321s

orange arv7519rw22_livebox_2.1_firmware 00.96.00.96.609es

orange arv7519rw22_livebox_2.1_firmware 00.96.00.96.613

Github Repositories

A curated list of my GitHub stars!

Awesome Stars A curated list of my GitHub stars! Generated by starred Contents ANTLR ASL ASP ActionScript Adblock Filter List AppleScript Assembly Astro Awk Batchfile Bikeshed Blade C C# C++ CMake CSS Clojure CoffeeScript Crystal D DIGITAL Command Language Dart Dhall Dockerfile Eagle Elixir Elm Emacs Lisp Erlang FreeMarker GDScript Gherkin Go Groff HCL HTML Haml Handlebars

NMAP NSE

Fuente: wwwincibe-certes/alerta-temprana/vulnerabilidades/cve-2018-20377 Vulnerabilidad en CVE-2018-20377 (CVE-2018-20377) Tipo: Gestión de credenciales Gravedad: Crítica Fecha publicación : 23/12/2018 Última modificación: 28/12/2018 Descripción:Los dispositivos Orange Livebox 0096320S permiten que atacantes remotos descubra

My stars on GitHub, grouped by language.

Awesome Stars A curated list of my GitHub stars! Generated by starred Contents Assembly Awk Bikeshed Blade C C# C++ CSS Clojure Crystal Cython D Dart Dockerfile Elixir Gherkin Go Groovy HTML Haskell Java JavaScript Jinja Jupyter Notebook Kotlin Lua Makefile Markdown Mustache Nim Nix Nunjucks OCaml OpenSCAD Others PHP Perl PowerShell Python R Roff Ruby Rust SCSS SVG Sass Sc