// For flags

CVE-2019-6972

 

Severity Score

7.5
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

2
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

An issue was discovered on TP-Link TL-WR1043ND V2 devices. The credentials can be easily decoded and cracked by brute-force, WordList, or Rainbow Table attacks. Specifically, credentials in the "Authorization" cookie are encoded with URL encoding and base64, leading to easy decoding. Also, the username is cleartext, and the password is hashed with the MD5 algorithm (after decoding of the URL encoded string with base64).

Se descubrió un problema en los dispositivos TP-Link TL-WR1043ND V2. Las credenciales se pueden descodificar y descifrar fácilmente mediante ataques de fuerza bruta, WordList o Rainbow Table. Específicamente, las credenciales en la cookie de "Autorización" están codificadas con codificación de URL y base64, lo que lleva a una fácil descodificación. Además, el nombre de usuario es texto claro y la contraseña se revisa con el algoritmo MD5 (después de descodificar la cadena codificada en URL con base64).

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2019-01-25 CVE Reserved
  • 2019-06-19 CVE Published
  • 2024-08-04 CVE Updated
  • 2024-08-04 First Exploit
  • 2024-11-09 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-326: Inadequate Encryption Strength
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Tp-link
Search vendor "Tp-link"
Tl-wr1043nd Firmware
Search vendor "Tp-link" for product "Tl-wr1043nd Firmware"
2.0
Search vendor "Tp-link" for product "Tl-wr1043nd Firmware" and version "2.0"
-
Affected
in Tp-link
Search vendor "Tp-link"
Tl-wr1043nd
Search vendor "Tp-link" for product "Tl-wr1043nd"
--
Safe