PT-2020-7414 · Cisco · Cisco Linksys E4200

Published

2020-02-05

·

Updated

2020-02-07

·

CVE-2013-2680

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Cisco Linksys E4200 version 1.0.05 Build 7
Description: The issue allows remote attackers to obtain sensitive information because passwords are stored in cleartext.
Recommendations: For Cisco Linksys E4200 version 1.0.05 Build 7, consider changing the password storage mechanism to a more secure method, such as hashing, to prevent cleartext password exposure. As a temporary workaround, restrict remote access to the device until a more secure storage method is implemented.

Exploit

Fix

Cleartext Storage of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-2680

Affected Products

Cisco Linksys E4200