CVE-2024-7170
CVE-2024-7170
Título es
CVE-2024-7170
Dom, 28/07/2024 – 22:15
Tipo
CWE-259
Gravedad v2.0
2.70
Gravedad 2.0 Txt
LOW
Título en
CVE-2024-7170
Descripción en
A vulnerability was found in TOTOLINK A3000RU 5.9c.5185. It has been rated as problematic. This issue affects some unknown processing of the file /web_cste/cgi-bin/product.ini. The manipulation leads to use of hard-coded password. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272591. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
29/07/2024
29/07/2024
Vector CVSS:3.1
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vector CVSS:2.0
AV:A/AC:L/Au:S/C:P/I:N/A:N
Gravedad 3.1 (CVSS 3.1 Base Score)
3.50
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
LOW
Referencias
Enviar en el boletín
Off