CVE-2018-17873
8.8
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
An incorrect access control vulnerability in the FTP configuration of WiFiRanger devices with firmware version 7.0.8rc3 and earlier allows an attacker with adjacent network access to read the SSH Private Key and log in to the root account.
Affected (1)
Products: Wifiranger: Wifiranger Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 7.0.8 |
| Running on/with | Platform Versions |
|---|---|
Wifiranger Wifiranger | All versions |
References (2)
Source: cve@mitre.org
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Timeline
No history available yet.