Emerson Smart Wireless Gateway 1420 4.6.59 allows non-privileged users (such as the default account 'maint') to perform administrative tasks by sending specially crafted HTTP requests to the application.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/161700/Emerson-Smart-Wireless-Gateway-1420-4.6.59-Privilege-Escalation.html | Exploit Third Party Advisory VDB Entry |
http://packetstormsecurity.com/files/161700/Emerson-Smart-Wireless-Gateway-1420-4.6.59-Privilege-Escalation.html | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 05:09
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/161700/Emerson-Smart-Wireless-Gateway-1420-4.6.59-Privilege-Escalation.html - Exploit, Third Party Advisory, VDB Entry |
12 Jul 2022, 17:42
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-Other |
Information
Published : 2021-03-10 18:15
Updated : 2024-11-21 05:09
NVD link : CVE-2020-19417
Mitre link : CVE-2020-19417
CVE.ORG link : CVE-2020-19417
JSON object : View
Products Affected
emerson
- wireless_1420_gateway_firmware
- wireless_1420_gateway
CWE