ID

VAR-201306-0464


TITLE

TP-LINK TL-PS110U Print Server 'tplink-enum.py' Secure Bypass Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2013-07969

DESCRIPTION

The TP-Link TL PS110U is a print server device. The telnet service running on the TP-Link TL PS110U print server allows an attacker to access configuration information without authentication, allowing an attacker to exploit the vulnerability to obtain sensitive information such as device name, MAC address, print model, and SNMP public string. Attackers can exploit this issue to bypass certain security restrictions and obtain sensitive information which may aid in further attacks. http://drupal.org/node/207891

Trust: 0.81

sources: CNVD: CNVD-2013-07969 // BID: 60682

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2013-07969

AFFECTED PRODUCTS

vendor:tp linkmodel:tl-ps110uscope: - version: -

Trust: 0.6

vendor:tp linkmodel:tl-ps110uscope:eqversion:0

Trust: 0.3

sources: CNVD: CNVD-2013-07969 // BID: 60682

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2013-07969
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2013-07969
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2013-07969

THREAT TYPE

network

Trust: 0.3

sources: BID: 60682

TYPE

Access Validation Error

Trust: 0.3

sources: BID: 60682

EXTERNAL IDS

db:BIDid:60682

Trust: 0.9

db:EXPLOIT-DBid:26318

Trust: 0.6

db:CNVDid:CNVD-2013-07969

Trust: 0.6

sources: CNVD: CNVD-2013-07969 // BID: 60682

REFERENCES

url:http://www.exploit-db.com/exploits/26318/

Trust: 0.6

url:http://www.tp-link.com/en/products/details/?model=tl-ps110u

Trust: 0.3

url:http://www.tp-link.com/en/

Trust: 0.3

sources: CNVD: CNVD-2013-07969 // BID: 60682

CREDITS

SANTHO

Trust: 0.3

sources: BID: 60682

SOURCES

db:CNVDid:CNVD-2013-07969
db:BIDid:60682

LAST UPDATE DATE

2022-05-17T01:51:12.312000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2013-07969date:2013-06-24T00:00:00
db:BIDid:60682date:2013-06-19T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2013-07969date:2013-06-24T00:00:00
db:BIDid:60682date:2013-06-19T00:00:00