ID

VAR-201206-0444


TITLE

Edimax IC-3030iWn UDP Packet Password Information Disclosure Vulnerability

Trust: 0.9

sources: CNVD: CNVD-2012-3476 // BID: 54006

DESCRIPTION

The Edimax IC-3030iWn is a network monitor. Edimax IC-3030iWn fails to properly authenticate the mechanism and can be exploited by leaking the administrator password by sending credentials to the client for authentication. Edimax IC-3030iWn is prone to an information-disclosure vulnerability. Successful exploits will allow a remote attacker to gain access to sensitive information. Information obtained will aid in further attacks

Trust: 0.81

sources: CNVD: CNVD-2012-3476 // BID: 54006

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2012-3476

AFFECTED PRODUCTS

vendor:edimaxmodel:ic-3030iwnscope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2012-3476

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201206-271

TYPE

information disclosure

Trust: 0.6

sources: CNNVD: CNNVD-201206-271

EXTERNAL IDS

db:BIDid:54006

Trust: 1.5

db:CNVDid:CNVD-2012-3476

Trust: 0.6

db:CNNVDid:CNNVD-201206-271

Trust: 0.6

sources: CNVD: CNVD-2012-3476 // BID: 54006 // CNNVD: CNNVD-201206-271

REFERENCES

url:http://www.securityfocus.com/bid/54006

Trust: 1.2

sources: CNVD: CNVD-2012-3476 // CNNVD: CNNVD-201206-271

CREDITS

y3dips

Trust: 0.9

sources: BID: 54006 // CNNVD: CNNVD-201206-271

SOURCES

db:CNVDid:CNVD-2012-3476
db:BIDid:54006
db:CNNVDid:CNNVD-201206-271

LAST UPDATE DATE

2022-05-17T01:53:20.891000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2012-3476date:2012-07-03T00:00:00
db:BIDid:54006date:2012-06-14T00:00:00
db:CNNVDid:CNNVD-201206-271date:2012-06-29T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2012-3476date:2012-07-03T00:00:00
db:BIDid:54006date:2012-06-14T00:00:00
db:CNNVDid:CNNVD-201206-271date:2012-06-26T00:00:00