Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- The web interface on Intelbras WIN 300 and WRN 342 devices
- allows remote attackers to discover credentials by reading the
- def_wirelesspassword line in the HTML source code.
- ------------------------------------------
- [VulnerabilityType Other]
- misconfiguration vulnerability
- ------------------------------------------
- [Vendor of Product]
- intelbras
- ------------------------------------------
- [Affected Product Code Base]
- router model win 300 , wrn 342 - router model win 300 , wrn 342
- ------------------------------------------
- [Affected Component]
- i looking dork in shodan found router model win 300 , wrn 342 ,without authentication, it is possible to see username and password
- ------------------------------------------
- [Attack Type]
- Remote
- ------------------------------------------
- [Impact Escalation of Privileges]
- true
- ------------------------------------------
- [Impact Information Disclosure]
- true
- ------------------------------------------
- [Attack Vectors]
- Dork shodan
- html:"def_wirelesspassword" country:"BR"
- ------------------------------------------
- [Discoverer]
- Cleiton Alves
- twitter @akaclandestine
- ------------------------------------------
- [Reference]
- https://www.intelbras.com/pt-br/ajuda-download/faq/roteador-wireless-veloz-wrn-342
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement