ZeroHour

CVE-2019-3916

CVSS 3.0
7.5 high
EPSS
2%p80
Published
()
Modified
Description

Information disclosure vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an remote, unauthenticated attacker to retrieve the value of the password salt by simply requesting an API URL in a web browser (e.g. /api).

Vendors
verizon
Products
fios quantum gateway g1100 firmware
Weakness
CWE-425
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news