CVE-2019-16313

ifw8 Router ROM v4.31 allows credential disclosure by reading the action/usermanager.htm HTML source code.
References
Link Resource
http://www.iwantacve.cn/index.php/archives/311/ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ifw8:fr6_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr6:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ifw8:fr8_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr8:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:ifw8:fr5_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr5:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:ifw8:fr5-e_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr5-e:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:ifw8:fr6-s_firmware:4.31:*:*:*:*:*:*:*
cpe:2.3:h:ifw8:fr6-s:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-09-14 16:15

Updated : 2024-02-04 20:20


NVD link : CVE-2019-16313

Mitre link : CVE-2019-16313

CVE.ORG link : CVE-2019-16313


JSON object : View

Products Affected

ifw8

  • fr6_firmware
  • fr5
  • fr8
  • fr6-s
  • fr6-s_firmware
  • fr8_firmware
  • fr5-e
  • fr5_firmware
  • fr5-e_firmware
  • fr6
CWE
CWE-798

Use of Hard-coded Credentials