vendor:
IWR-3000N
by:
Social Engineering Neo
7.5
CVSS
HIGH
Denial of Service (DoS)
20
CWE
Product Name: IWR-3000N
Affected Version From: Any version
Affected Version To: Any version
Patch Exists: YES
Related CWE: CVE-2019-11415
CPE: o:intelbras:iwr-3000n
Platforms Tested:
2019
CVE-2019-11415
A malformed login request allows remote attackers to cause a denial of service (reboot), as demonstrated by JSON misparsing of the "}" string to v1/system/login.
Mitigation:
Upgrade to latest firmware version iwr-3000n-1.8.7_0 for 3000n routers to prevent this issue.