CVE-2019-19142
HIGHIntelbras WRN 240 Firmware - Unauthenticated Firmware Replacement via Firmware.cfg URI
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-19142. PoCs published by Elber Tavares.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in Intelbras WRN240 routers, allowing unauthenticated firmware upload via a POST request to a specific URI. The PoC uses curl to send a malicious configuration file, potentially leading to full device compromise.
Description
Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in Intelbras WRN240 routers, allowing unauthenticated firmware upload via a POST request to a specific URI. The PoC uses curl to send a malicious configuration file, potentially leading to full device compromise.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N