CVE-2017-15656

Severity
8.8HIGH
EPSS
0.5%
top 34.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 31
Latest updateMay 13

Description

Password are stored in plaintext in nvram in the HTTPd server in all current versions (<= 3.0.0.4.380.7743) of Asus asuswrt.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages1 packages

NVDasus/asuswrt3.0.0.4.380.7743

🔴Vulnerability Details

2
GHSA
GHSA-j3wh-j44m-36fg: Password are stored in plaintext in nvram in the HTTPd server in all current versions (<= 32022-05-13
CVEList
CVE-2017-15656: Password are stored in plaintext in nvram in the HTTPd server in all current versions (<= 32018-01-31
CVE-2017-15656 (HIGH CVSS 8.8) | Password are stored in plaintext in | cvebase.io