5
CVE-2014-8655
- EPSS 7.38%
- Veröffentlicht 06.11.2014 15:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The Compal Broadband Networks (CBN) CH6640E and CG6640E Wireless Gateway 1.0 with firmware CH6640-3.5.11.7-NOSH allows remote attackers to bypass authentication and obtain sensitive information via an (a) admin or a (b) root value in the userData cookie in a request to (1) CmgwWirelessSecurity.xml, (2) DocsisConfigFile.xml, or (3) CmgwBasicSetup.xml in xml/ or (4) basicDDNS.html, (5) basicLanUsers.html, or (6) rootDesc.xml.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Compal Broadband Networks ≫ Firmware Versionch6640-3.5.11.7-nosh
Compal Broadband Networks ≫ Cg6640e Wireless Gateway Version1.0
Compal Broadband Networks ≫ Ch664oe Wireless Gateway Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 7.38% | 0.936 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://packetstormsecurity.com/files/128860/CBN-CH6640E-CG6640E-Wireless-Gateway-XSS-CSRF-DoS-Disclosure.html
http://www.exploit-db.com/exploits/35075
http://www.securityfocus.com/bid/70762
http://osvdb.org/show/osvdb/113837
https://exchange.xforce.ibmcloud.com/vulnerabilities/98331