CVE-2015-0558
MEDIUMADB P.DGA4001N Firmware PDG_TEF_SP_4.06L.6 - Missing Encryption of Sensitive Data via WPA Key Generation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2015-0558. PoCs published by Eduardo Novella.
AI-analyzed exploit summary This exploit demonstrates an unauthenticated information disclosure vulnerability in Pirelli ADSL2/2+ Wireless Router P.DGA4001N, allowing remote retrieval of sensitive configuration details such as Wi-Fi credentials, session keys, and device PINs via direct HTTP requests.
Description
The ADB (formerly Pirelli Broadband Solutions) P.DGA4001N router with firmware PDG_TEF_SP_4.06L.6, and possibly other routers, uses "1236790" and the MAC address to generate the WPA key.
Exploits (1)
This exploit demonstrates an unauthenticated information disclosure vulnerability in Pirelli ADSL2/2+ Wireless Router P.DGA4001N, allowing remote retrieval of sensitive configuration details such as Wi-Fi credentials, session keys, and device PINs via direct HTTP requests.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N