PT-2008-2844 · Deutsche Telekom · Deutsche Telekom Speedport W500 Dsl Router
Published
2008-03-10
·
Updated
2018-10-11
·
CVE-2008-1252
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Deutsche Telekom Speedport W500 DSL router (affected versions not specified)
Description
The issue concerns the login page of the Deutsche Telekom Speedport W500 DSL router. Specifically, the
b banner.stm page allows remote attackers to obtain the logon password by reading the pwd field in the HTML source.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Deutsche Telekom Speedport W500 Dsl Router