ZeroHour

CVE-2018-8755

CVSS 3.0
9.8 critical
EPSS
1%p63
Published
()
Modified
Description

NuCom WR644GACV devices before STA006 allow an attacker to download the configuration file without credentials. By downloading this file, an attacker can access the admin password, WPA key, and any config information of the device.

Vendors
nucom
Products
wr644gacv firmware
Weakness
CWE-862
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.