Remote Credential Disclosure Vulnerability in Technicolor Devices
CVE-2018-20440

9.8CRITICAL

Key Information:

Vendor
CVE Published:
25 December 2018

What is CVE-2018-20440?

Technicolor CWA0101 and CWA0101E-A23E-c7000r5712-170315-SKC devices contain a vulnerability that allows remote attackers to obtain Wi-Fi credentials through specific SNMP requests. Exploiting this vulnerability can expose sensitive network information, enabling unauthorized access to the wireless network. It is essential for users of these devices to implement security measures to mitigate the risks associated with this vulnerability.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.