Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.
References
| Link | Resource |
|---|---|
| https://fireshellsecurity.team/hack-n-routers/ | Exploit Third Party Advisory |
| http://packetstormsecurity.com/files/156589/Intelbras-Wireless-N-150Mbps-WRN240-Authentication-Bypass.html |
Configurations
Configuration 1 (hide)
| AND |
|
Information
Published : 2020-01-17 02:15
Updated : 2020-08-24 17:37
NVD link : CVE-2019-19142
Mitre link : CVE-2019-19142
JSON object : View
Products Affected
intelbras
- wrn_240_firmware
- wrn_240
CWE
CWE-306
Missing Authentication for Critical Function
