Vivo modems allow remote attackers to obtain sensitive information by reading the index.cgi?page=wifi HTML source code, as demonstrated by ssid and psk_wepkey fields.
References
Link | Resource |
---|---|
https://github.com/mateeuslinno/viv0n | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2017-12-07 21:29
Updated : 2017-12-22 10:26
NVD link : CVE-2017-17463
Mitre link : CVE-2017-17463
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
vivo
- modem
- modem_firmware