drive.google.com
https://drive.google.com/open?id=1MH6DMhP1JsV_RptGXDze0Vo9MDuCH9se CVE-2019-20074
HIGH
netis-systems dl4343_firmware Improper Privilege Management
Record summary
CVE-2019-20074 has a selected CVSS score of 8.8 (high).
Description
On Netis DL4323 devices, any user role can view sensitive information, such as a user password or the FTP password, via the form2saveConf.cgi page.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · May 9, 2025 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
dl4343_firmwareBrowse netis-systems / dl4343_firmware | VulnCheck | Version data not supplied | |
References
3fatihhcelik.blogspot.com
https://fatihhcelik.blogspot.com/2019/12/clear-text-password-netis-dl4323.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-20074