← Back

CVE-2014-2046

nvd nist
Published: May 14, 2014Modified: May 6, 2026

JSON object

Loading...
9.7
Vector
AV:N/AC:L/Au:N/C:P/I:C/A:C
Exploitability: 10.0 / Impact: 9.5
Source: NVD

Description

cgi-bin/rpcBridge in the web interface 1.1 on Broadcom Ltd PIPA C211 rev2 does not properly restrict access, which allows remote attackers to (1) obtain credentials and other sensitive information via a certain request to the config.getValuesHashExcludePaths method or (2) modify the firmware via unspecified vectors.

Affected (2)

2 products
Pipa C211 Web Interface
Pipa C211
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.1
All versions

Related CWEs

Timeline

No history available yet.