PT-2014-4177 · Conceptronic · Conceptronic C54Apm
Published
2014-01-10
·
Updated
2014-05-05
·
CVE-2014-1408
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Conceptronic C54APM access point with runtime code 1.26
Description
The issue allows remote attackers to obtain access via an HTTP request, as demonstrated by stored XSS attacks, due to a default password of
admin for the admin account.Recommendations
For Conceptronic C54APM access point with runtime code 1.26, change the default password of the
admin account to a strong and unique password to prevent unauthorized access.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Conceptronic C54Apm