6.3

CVE-2014-2719

Advanced_System_Content.asp in the ASUS RT series routers with firmware before 3.0.0.4.374.5517, when an administrator session is active, allows remote authenticated users to obtain the administrator user name and password by reading the source code.

Data is provided by the National Vulnerability Database (NVD)
AsusRt-ac66u Firmware Version3.0.0.4.140
AsusRt-ac66u Firmware Version3.0.0.4.220
AsusRt-ac66u Firmware Version3.0.0.4.246
AsusRt-ac66u Firmware Version3.0.0.4.260
AsusRt-ac66u Firmware Version3.0.0.4.270
AsusRt-ac66u Firmware Version3.0.0.4.354
AsusRt-ac68u Firmware Version3.0.0.4.374.4755
AsusRt-ac68u Firmware Version3.0.0.4.374_4561
AsusRt-ac68u Firmware Version3.0.0.4.374_4887
AsusRt-n10e Firmware Version2.0.0.7
AsusRt-n10e Firmware Version2.0.0.10
AsusRt-n10e Firmware Version2.0.0.16
AsusRt-n10e Firmware Version2.0.0.19
AsusRt-n10e Firmware Version2.0.0.20
AsusRt-n10e Firmware Version2.0.0.24
AsusRt-n10e Firmware Version2.0.0.25
AsusRt-n14u Firmware Version3.0.0.4.322
AsusRt-n14u Firmware Version3.0.0.4.356
AsusRt-n16 Firmware Version1.0.1.9
AsusRt-n16 Firmware Version1.0.2.3
AsusRt-n16 Firmware Version3.0.0.3.108
AsusRt-n16 Firmware Version3.0.0.3.162
AsusRt-n16 Firmware Version3.0.0.3.178
AsusRt-n16 Firmware Version3.0.0.4.220
AsusRt-n16 Firmware Version3.0.0.4.246
AsusRt-n16 Firmware Version3.0.0.4.260
AsusRt-n16 Firmware Version3.0.0.4.354
AsusRt-n16 Firmware Version7.0.2.38b
AsusRt-n56u Firmware Version1.0.1.4
AsusRt-n56u Firmware Version1.0.1.4o
AsusRt-n56u Firmware Version1.0.1.7c
AsusRt-n56u Firmware Version1.0.1.7f
AsusRt-n56u Firmware Version1.0.1.8j
AsusRt-n56u Firmware Version1.0.1.8l
AsusRt-n56u Firmware Version1.0.1.8n
AsusRt-n56u Firmware Version3.0.0.4.318
AsusRt-n56u Firmware Version3.0.0.4.334
AsusRt-n56u Firmware Version3.0.0.4.342
AsusRt-n56u Firmware Version3.0.0.4.360
AsusRt-n56u Firmware Version7.0.1.21
AsusRt-n56u Firmware Version7.0.1.32
AsusRt-n56u Firmware Version8.1.1.4
AsusRt-n65u Firmware Version3.0.0.3.134
AsusRt-n65u Firmware Version3.0.0.3.176
AsusRt-n65u Firmware Version3.0.0.4.260
AsusRt-n65u Firmware Version3.0.0.4.334
AsusRt-n65u Firmware Version3.0.0.4.342
AsusRt-n65u Firmware Version3.0.0.4.346
AsusRt-n66u Firmware Version3.0.0.4.272
AsusRt-n66u Firmware Version3.0.0.4.370
AsusRt-ac68u Version-
T-mobileTm-ac1900 Version3.0.0.4.376_3169
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.31% 0.51
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.3 6.8 6.9
AV:N/AC:M/Au:S/C:C/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.