7.8

CVE-2014-1408

Exploit
The Conceptronic C54APM access point with runtime code 1.26 has a default password of admin for the admin account, which makes it easier for remote attackers to obtain access via an HTTP request, as demonstrated by stored XSS attacks.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ConceptronicC54apm Firmware Version1.26
ConceptronicC54apm Versionv2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.55% 0.718
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:C/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://antoniovazquezblanco.github.io/docs/advisories/Advisory_C54APM_Multiple.pdf
Vendor Advisory
Exploit
http://download.conceptronic.net/manuals/C04-058_C54APM_v2.0_Quick_Guide_ML.pdf