Unauthorized Access to FiberHome Mobile WiFi Device Model LM53Q1 Web Services
CVE-2017-16887
9.8CRITICAL
What is CVE-2017-16887?
The FiberHome Mobile WIFI Device Model LM53Q1 employs SOAP-based web services for managing its portal. Due to improper access controls, the device is susceptible to unauthorized access. This vulnerability could allow attackers to exploit web services, potentially disclosing sensitive information such as the WLAN security key or password. Ensuring proper authentication measures are in place is critical to safeguarding user credentials and maintaining network security.
References
EPSS Score
5% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved