vendor:
Mobile WiFi
by:
Daniele Linguaglossa
8,8
CVSS
HIGH
Password reset exploit
798
CWE
Product Name: Mobile WiFi
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: No
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Python
2020
Vodafone Mobile WiFi – Password reset exploit (Daniele Linguaglossa)
This exploit is used to reset the password of Vodafone Mobile WiFi devices. It uses a brute-force attack to guess the password and gain access to the device. The exploit is written in Python and uses the urllib2, json, datetime, time, httplib, threading, Queue, and multiprocessing modules.
Mitigation:
The best way to mitigate this vulnerability is to use strong passwords and two-factor authentication.