Show filters
39 Total Results
Displaying 21-30 of 39
Sort by:
Attacker Value
Unknown

CVE-2019-20004

Disclosure Date: January 05, 2020 (last updated February 21, 2025)
An issue was discovered on Intelbras IWR 3000N 1.8.7 devices. When the administrator password is changed from a certain client IP address, administrative authorization remains available to any client at that IP address, leading to complete control of the router.
Attacker Value
Unknown

CVE-2019-19995

Disclosure Date: December 26, 2019 (last updated November 08, 2023)
A CSRF issue was discovered on Intelbras IWR 3000N 1.8.7 devices, leading to complete control of the router, as demonstrated by v1/system/user.
Attacker Value
Unknown

CVE-2019-19516

Disclosure Date: December 02, 2019 (last updated November 27, 2024)
Intelbras WRN 150 1.0.18 devices allow CSRF via GO=system_password.asp to the goform/SysToolChangePwd URI to change a password.
Attacker Value
Unknown

CVE-2019-17222

Disclosure Date: November 07, 2019 (last updated November 27, 2024)
An issue was discovered on Intelbras WRN 150 1.0.17 devices. There is stored XSS in the Service Name tab of the WAN configuration screen, leading to a denial of service (inability to change the configuration).
Attacker Value
Unknown

CVE-2019-17600

Disclosure Date: October 15, 2019 (last updated November 27, 2024)
Intelbras IWR 1000N 1.6.4 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled.
Attacker Value
Unknown

CVE-2019-19007

Disclosure Date: August 21, 2019 (last updated November 08, 2023)
Intelbras IWR 3000N 1.8.7 devices allow disclosure of the administrator login name and password because v1/system/user is mishandled, a related issue to CVE-2019-17600.
Attacker Value
Unknown

CVE-2019-11414

Disclosure Date: April 22, 2019 (last updated November 27, 2024)
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices. When the administrator password is changed from a certain client IP address, administrative authorization remains available to any client at that IP address, leading to complete control of the router.
0
Attacker Value
Unknown

CVE-2019-11415

Disclosure Date: April 22, 2019 (last updated November 27, 2024)
An issue was discovered on Intelbras IWR 3000N 1.5.0 devices. A malformed login request allows remote attackers to cause a denial of service (reboot), as demonstrated by JSON misparsing of the \""} string to v1/system/login.
0
Attacker Value
Unknown

CVE-2019-11416

Disclosure Date: April 22, 2019 (last updated November 27, 2024)
A CSRF issue was discovered on Intelbras IWR 3000N 1.5.0 devices, leading to complete control of the router, as demonstrated by v1/system/user.
0
Attacker Value
Unknown

CVE-2019-19996

Disclosure Date: February 28, 2019 (last updated November 08, 2023)
An issue was discovered on Intelbras IWR 3000N 1.8.7 devices. A malformed login request allows remote attackers to cause a denial of service (reboot), as demonstrated by JSON misparsing of the \""} string to v1/system/login.