PT-2021-11848 · Unknown · Libre Wireless Ls9 Ls1.5/P7040

Published

2021-05-03

·

Updated

2022-07-12

·

CVE-2020-35756

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Libre Wireless LS9 LS1.5/p7040 devices (affected versions not specified)
Description: An issue was discovered where the luci service daemon running on port 7777 does not require authentication to return the device configuration password in cleartext when using the GETPASS command. This allows any unauthenticated person with access to port 7777 on the device to leak the user's personal device configuration password by issuing the GETPASS command.
Recommendations: As a temporary workaround, consider restricting access to port 7777 to minimize the risk of exploitation. Avoid using the GETPASS command in the luci service daemon until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-35756

Affected Products

Libre Wireless Ls9 Ls1.5/P7040