vendor:
PRN2001 Wireless- N Broadband AP / Router
by:
Herman Groeneveld aka sh4d0wman
8,8
CVSS
HIGH
CWE-286: Incorrect User Management
286
CWE
Product Name: PRN2001 Wireless- N Broadband AP / Router
Affected Version From: Ver 1.2
Affected Version To: Ver 1.2
Patch Exists: No
Related CWE: N/A
CPE: h:prolink:prn2001
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7 / Kali
2014
Prolink PRN2001 Multiple Vulnerabilities
Insufficient separation of privileges. Any account with user-level privileges has the following privileges in the web interface: Access to the device's configuration, Access to the device's log files, Access to the device's firmware.
Mitigation:
Restrict access to the web interface to only trusted users.