Sensitive Information Disclosure in Cisco Meraki MX67 and MX68 Security Appliances
CVE-2019-1815
What is CVE-2019-1815?
A security vulnerability has been identified in the local status page feature of Cisco Meraki MX67 and MX68 security appliances, which could allow unauthorized users to access and retrieve logs with confidential device information. This issue arises from insufficient access controls on files containing debugging and maintenance data, exploitable when the local status page is activated. Potential attackers can gain access to critical data such as wireless pre-shared keys and Site-to-Site VPN keys, potentially leading to unauthorized administrative access to the devices.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco Meraki MX Firmware
References
CVSS V3.0
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved