Enhancement: vulnerabilities/other/huawei-router-auth-bypass.yaml by mp

patch-1
MostInterestingBotInTheWorld 2022-06-03 10:47:45 -04:00
parent ca7ab8fc62
commit 46250985be
1 changed files with 5 additions and 1 deletions

View File

@ -4,9 +4,13 @@ info:
name: Huawei Router - Authentication Bypass name: Huawei Router - Authentication Bypass
author: gy741 author: gy741
severity: critical severity: critical
description: The default password of this router is the last 8 characters of the device's serial number which exist in the back of the device. description: Huawei Routers are vulnerable to authentication bypass because the default password of this router is the last 8 characters of the device's serial number which exist on the back of the device.
reference: reference:
- https://www.exploit-db.com/exploits/48310 - https://www.exploit-db.com/exploits/48310
classification:
cvss-metrics: CVSS:10.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
cvss-score: 10.0
cwe-id: CWE-288
tags: huawei,auth-bypass,router tags: huawei,auth-bypass,router
requests: requests: