Record summary

CVE-2019-16313 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.

Description

ifw8 Router ROM v4.31 allows credential disclosure by reading the action/usermanager.htm HTML source code.

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

Nuclei templates

1
ProjectDiscoveryHIGHifw8 Router ROM v4.31 - Credential DiscoveryCVSS 7.5

ifw8 Router ROM v4.31 is vulnerable to credential disclosure via action/usermanager.htm HTML source code.

Impact

An attacker can exploit this vulnerability to discover sensitive credentials.

Remediation

Update the ifw8 Router ROM to a version that is not affected by CVE-2019-16313.

WeaknessesCWE-798
Authorspikpikcu
Template tagscvecve2019exposurerouteriotifw8vuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CPE: cpe:2.3:o:ifw8:fr6_firmware:4.31:*:*:*:*:*:*:*

Source: ProjectDiscovery

References

2