ASUS RT-AC* and RT-N* devices with firmware before 3.0.0.4.380.7378 allow JSONP Information Disclosure such as a network map.
References
Link | Resource |
---|---|
https://wwws.nightwatchcybersecurity.com/2017/05/09/multiple-vulnerabilities-in-asus-routers/ | Third Party Advisory |
https://www.asus.com/support/Download/11/2/0/161/45/ | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2017-05-09 22:29
Updated : 2017-05-15 18:35
NVD link : CVE-2017-5892
Mitre link : CVE-2017-5892
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
asus
- rt-ac1750_firmware
- rt-ac1750