PT-2014-4177 · Conceptronic · Conceptronic C54Apm
Publicado
2014-01-10
·
Atualizado
2014-05-05
·
CVE-2014-1408
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Conceptronic C54APM access point with runtime code 1.26
Description
The issue allows remote attackers to obtain access via an HTTP request, as demonstrated by stored XSS attacks, due to a default password of
admin for the admin account.Recommendations
For Conceptronic C54APM access point with runtime code 1.26, change the default password of the
admin account to a strong and unique password to prevent unauthorized access.Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Conceptronic C54Apm