vendor:
Humax HG100R
by:
Gambler
9,8
CVSS
CRITICAL
Authentication Bypass
287
CWE
Product Name: Humax HG100R
Affected Version From: VER 2.0.6
Affected Version To: VER 2.0.6
Patch Exists: YES
Related CWE: CVE-2017-7315
CPE: a:humaxdigital:humax_hg100r
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: OSX Linux
2017
Humax Backup file download
Humax HG100R backup file download vulnerability allows an attacker to download the configuration file without authentication. This vulnerability is due to the lack of authentication in the GatewaySettings.bin file. An attacker can exploit this vulnerability by sending a GET request to the GatewaySettings.bin file. The configuration file will be downloaded and decoded in base64 format.
Mitigation:
Authentication should be implemented for the GatewaySettings.bin file.