CVE-2024-1406
Linksys WRT54GL Web Management Interface SysInfo1.htm information disclosure
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A vulnerability was found in Linksys WRT54GL 4.30.18. It has been declared as problematic. This vulnerability affects unknown code of the file /SysInfo1.htm of the component Web Management Interface. The manipulation leads to information disclosure. The exploit has been disclosed to the public and may be used. VDB-253330 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Se encontró una vulnerabilidad en Linksys WRT54GL 4.30.18. Ha sido declarada problemática. Esta vulnerabilidad afecta a un código desconocido del archivo /SysInfo1.htm del componente Web Management Interface. La manipulación conduce a la divulgación de información. El exploit ha sido divulgado al público y puede utilizarse. VDB-253330 es el identificador asignado a esta vulnerabilidad. NOTA: Se contactó primeramente con el proveedor sobre esta divulgación, pero no respondió de ninguna manera.
In Linksys WRT54GL 4.30.18 wurde eine Schwachstelle ausgemacht. Sie wurde als problematisch eingestuft. Es geht um eine nicht näher bekannte Funktion der Datei /SysInfo1.htm der Komponente Web Management Interface. Dank der Manipulation mit unbekannten Daten kann eine information disclosure-Schwachstelle ausgenutzt werden. Der Exploit steht zur öffentlichen Verfügung.
CVSS Scores
SSVC
- Decision:Track*
Timeline
- 2024-02-09 CVE Reserved
- 2024-02-10 CVE Published
- 2024-02-17 EPSS Updated
- 2024-08-29 CVE Updated
- 2024-08-29 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://github.com/leetsun/Hints/tree/main/linksys-wrt54gl/3 | 2024-08-29 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Linksys Search vendor "Linksys" | Wrt54gl Firmware Search vendor "Linksys" for product "Wrt54gl Firmware" | 4.30.18 Search vendor "Linksys" for product "Wrt54gl Firmware" and version "4.30.18" | - |
Affected
| in | Linksys Search vendor "Linksys" | Wrt54gl Search vendor "Linksys" for product "Wrt54gl" | - | - |
Safe
|