110146vdb entry
http://osvdb.org/show/osvdb/110146 CVE-2014-5246
Tenda A5s Router 3.02.05_CN - Authentication Bypass
Record summary
CVE-2014-5246 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
The Shenzhen Tenda Technology Tenda A5s router with firmware 3.02.05_CN allows remote attackers to bypass authentication and gain administrator access by setting the admin:language cookie to zh-cn.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBTenda A5s Router 3.02.05_CN - Authentication BypassExploitDB exploitby zixianNot analyzed1 file
References
6packetstormsecurity.com
http://packetstormsecurity.com/files/127905/Tenda-A5s-Router-Authentication-Bypass.html 34361exploit
http://www.exploit-db.com/exploits/34361 69267vdb entry
http://www.securityfocus.com/bid/69267 tenda-a5srouter-cve20145246-security-bypass(95337)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/95337 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2014-5246