CVE-2025-55976
- EPSS 0.09%
- Veröffentlicht 10.09.2025 00:00:00
- Zuletzt bearbeitet 17.10.2025 19:09:23
Intelbras IWR 3000N 1.9.8 exposes the Wi-Fi password in plaintext via the /api/wireless endpoint. Any unauthenticated user on the local network can directly obtain the Wi-Fi network password by querying this endpoint.
CVE-2019-20004
- EPSS 0.35%
- Veröffentlicht 05.01.2020 23:15:10
- Zuletzt bearbeitet 21.11.2024 04:37:51
An issue was discovered on Intelbras IWR 3000N 1.8.7 devices. When the administrator password is changed from a certain client IP address, administrative authorization remains available to any client at that IP address, leading to complete control of...
CVE-2019-19995
- EPSS 0.19%
- Veröffentlicht 26.12.2019 18:15:10
- Zuletzt bearbeitet 21.11.2024 04:35:48
A CSRF issue was discovered on Intelbras IWR 3000N 1.8.7 devices, leading to complete control of the router, as demonstrated by v1/system/user.
CVE-2019-19996
- EPSS 0.95%
- Veröffentlicht 26.12.2019 18:15:10
- Zuletzt bearbeitet 21.11.2024 04:35:48
An issue was discovered on Intelbras IWR 3000N 1.8.7 devices. A malformed login request allows remote attackers to cause a denial of service (reboot), as demonstrated by JSON misparsing of the \""} string to v1/system/login.
- EPSS 0.46%
- Veröffentlicht 05.12.2019 16:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:59
Intelbras IWR 3000N 1.8.7 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled, a related issue to CVE-2019-17600.
CVE-2019-11414
- EPSS 0.43%
- Veröffentlicht 22.04.2019 11:29:05
- Zuletzt bearbeitet 21.11.2024 04:21:04
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices. When the administrator password is changed from a certain client IP address, administrative authorization remains available to any client at that IP address, leading to complete control of...
CVE-2019-11415
- EPSS 33.98%
- Veröffentlicht 22.04.2019 11:29:05
- Zuletzt bearbeitet 21.11.2024 04:21:04
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices. A malformed login request allows remote attackers to cause a denial of service (reboot), as demonstrated by JSON misparsing of the \""} string to v1/system/login.
CVE-2019-11416
- EPSS 1.65%
- Veröffentlicht 22.04.2019 11:29:05
- Zuletzt bearbeitet 21.11.2024 04:21:04
A CSRF issue was discovered on Intelbras IWR 3000N 1.5.0 devices, leading to complete control of the router, as demonstrated by v1/system/user.