7.5
CVE-2021-42886
- EPSS 0.92%
- Veröffentlicht 03.06.2022 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:28:16
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
TOTOLINK EX1200T V4.1.2cu.5215 contains an information disclosure vulnerability where an attacker can get the apmib configuration file without authorization, and usernames and passwords can be found in the decoded file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Totolink ≫ Ex1200t Firmware Version4.1.2cu.5215
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.92% | 0.749 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.