github.com
https://github.com/ideaengine007/RandomStuffs/blob/main/Version_Vulnerable.PNG CVE-2020-25988
MEDIUM
Genexis Platinum 4410 Router 2.1 - UPnP Credential Exposure
Record summary
CVE-2020-25988 has a selected CVSS score of 6.5 (medium); EIP currently links 1 catalogued exploit.
Description
UPNP Service listening on port 5555 in Genexis Platinum 4410 Router V2.1 (P4410-V2–1.34H) has an action 'X_GetAccess' which leaks the credentials of 'admin', provided that the attacker is network adjacent.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBGenexis Platinum 4410 Router 2.1 - UPnP Credential ExposureExploitDB exploitby Nitesh SuranaNot analyzed1 file
References
6medium.com
https://medium.com/%40niteshsurana/424f0db73129 medium.com
https://medium.com/@niteshsurana/424f0db73129 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-25988 exploit-db.com
https://www.exploit-db.com/exploits/49075 youtu.be
https://youtu.be/GOMLavacqSI