vendor:
B-FOCuS ADSL2+ Combo332+ wireless router
by:
SecurityFocus
4.3
CVSS
MEDIUM
Information Disclosure
200
CWE
Product Name: B-FOCuS ADSL2+ Combo332+ wireless router
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2006
ECI Telecom’s B-FOCuS ADSL2+ Combo332+ wireless router Information Disclosure Vulnerability
ECI Telecom's B-FOCuS ADSL2+ Combo332+ wireless router is prone to an information-disclosure vulnerability. The router's Web-Based Management interface fails to authenticate users before providing access to sensitive information. Exploiting this issue may allow an unauthenticated remote attacker to retrieve sensitive information from the affected device, which may aid in further attacks.
Mitigation:
Ensure that the router is configured to require authentication before providing access to sensitive information.