Incorrect Access Control in the configuration backup path in SAGEMCOM F@ST3486 NET DOCSIS 3.0, software NET_4.109.0, allows remote unauthenticated users to download the router configuration file via the /backupsettings.conf URI, when any valid session is running.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sagemcom f\\@st_3486_router_firmware 4.109.0 |