PT-2015-3217 · Mediabridge · Medialink Mwn-Wapr300N
Joel Land
·
Published
2015-12-31
·
Updated
2015-12-31
·
CVE-2015-5994
CVSS v2.0
7.9
High
| Vector | AV:A/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Mediabridge Medialink MWN-WAPR300N version 5.07.50
Description
The web management interface has a default password of
admin for the admin account and a default password of password for the medialink account. This allows remote attackers to obtain administrative privileges by leveraging a Wi-Fi session.Recommendations
For version 5.07.50, change the default passwords for the
admin and medialink accounts to strong, unique passwords to prevent unauthorized access. As a temporary workaround, consider restricting access to the web management interface until the default passwords are changed.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Medialink Mwn-Wapr300N