Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2021-42893: vuln/totolink_ex1200t_sysstatus_leak.md at main · p1Kk/vuln

In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can obtain sensitive information (wifikey, etc.) without authorization through getSysStatusCfg.

CVE
#vulnerability#auth#wifi

Permalink

main

Switch branches/tags

Go to file

  • Go to file

  • Copy path

  • Copy permalink

p1Kk 21_10_20

Latest commit dcc2b75 Oct 22, 2021

History

1 contributor

Users who have contributed to this file

TOTOLINK EX1200T LEAK Vulnerability Description PoC

16 lines (9 sloc) 361 Bytes

Raw Blame

  • Open with Desktop
  • View raw
  • Copy raw contents
  • View blame

TOTOLINK EX1200T LEAK****Vulnerability Description

PRODUCT: TOTOLINK EX1200T V4.1.2cu.5215 (latest version)

The attacker can get the sensitive information (wifikey, etc.) without authorization.

PoC

{"topicurl":"setting/getSysStatusCfg"}

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907