CVE-2014-2719
Summary
| CVE | CVE-2014-2719 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2014-04-22 13:06:29 UTC |
| Updated | 2026-05-06 22:30:45 UTC |
| Description | Advanced_System_Content.asp in the ASUS RT series routers with firmware before 3.0.0.4.374.5517, when an administrator session is active, allows remote authenticated users to obtain the administrator user name and password by reading the source code. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
SingleConfidentiality
CompleteIntegrity
NoneAvailability
NoneAV:N/AC:M/Au:S/C:C/I:N/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Asus | Rt-ac66u Firmware | 3.0.0.4.140 | All | All | All |
| Operating System | Asus | Rt-ac66u Firmware | 3.0.0.4.220 | All | All | All |
| Operating System | Asus | Rt-ac66u Firmware | 3.0.0.4.246 | All | All | All |
| Operating System | Asus | Rt-ac66u Firmware | 3.0.0.4.260 | All | All | All |
| Operating System | Asus | Rt-ac66u Firmware | 3.0.0.4.270 | All | All | All |
| Operating System | Asus | Rt-ac66u Firmware | 3.0.0.4.354 | All | All | All |
| Hardware | Asus | Rt-ac68u | - | All | All | All |
| Operating System | Asus | Rt-ac68u Firmware | 3.0.0.4.374.4755 | All | All | All |
| Operating System | Asus | Rt-ac68u Firmware | 3.0.0.4.374_4561 | All | All | All |
| Operating System | Asus | Rt-ac68u Firmware | 3.0.0.4.374_4887 | All | All | All |
| Operating System | Asus | Rt-n10e Firmware | 2.0.0.10 | All | All | All |
| Operating System | Asus | Rt-n10e Firmware | 2.0.0.16 | All | All | All |
| Operating System | Asus | Rt-n10e Firmware | 2.0.0.19 | All | All | All |
| Operating System | Asus | Rt-n10e Firmware | 2.0.0.20 | All | All | All |
| Operating System | Asus | Rt-n10e Firmware | 2.0.0.24 | All | All | All |
| Operating System | Asus | Rt-n10e Firmware | 2.0.0.25 | All | All | All |
| Operating System | Asus | Rt-n10e Firmware | 2.0.0.7 | All | All | All |
| Operating System | Asus | Rt-n14u Firmware | 3.0.0.4.322 | All | All | All |
| Operating System | Asus | Rt-n14u Firmware | 3.0.0.4.356 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 1.0.1.9 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 1.0.2.3 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 3.0.0.3.108 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 3.0.0.3.162 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 3.0.0.3.178 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 3.0.0.4.220 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 3.0.0.4.246 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 3.0.0.4.260 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 3.0.0.4.354 | All | All | All |
| Operating System | Asus | Rt-n16 Firmware | 7.0.2.38b | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 1.0.1.4 | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 1.0.1.4o | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 1.0.1.7c | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 1.0.1.7f | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 1.0.1.8j | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 1.0.1.8l | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 1.0.1.8n | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 3.0.0.4.318 | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 3.0.0.4.334 | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 3.0.0.4.342 | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 3.0.0.4.360 | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 7.0.1.21 | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 7.0.1.32 | All | All | All |
| Operating System | Asus | Rt-n56u Firmware | 8.1.1.4 | All | All | All |
| Operating System | Asus | Rt-n65u Firmware | 3.0.0.3.134 | All | All | All |
| Operating System | Asus | Rt-n65u Firmware | 3.0.0.3.176 | All | All | All |
| Operating System | Asus | Rt-n65u Firmware | 3.0.0.4.260 | All | All | All |
| Operating System | Asus | Rt-n65u Firmware | 3.0.0.4.334 | All | All | All |
| Operating System | Asus | Rt-n65u Firmware | 3.0.0.4.342 | All | All | All |
| Operating System | Asus | Rt-n65u Firmware | 3.0.0.4.346 | All | All | All |
| Operating System | Asus | Rt-n66u Firmware | 3.0.0.4.272 | All | All | All |
| Operating System | Asus | Rt-n66u Firmware | 3.0.0.4.370 | All | All | All |
| Operating System | T-mobile | Tm-ac1900 | 3.0.0.4.376_3169 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| (CVE-2014-2719) More fun with wireless routers: ASUS RT-AC68U and others reveal admin password | David Longenecker | af854a3a-2127-422b-91ae-364da2661108 | dnlongen.blogspot.com | |
| Support Center | ASUS Global | af854a3a-2127-422b-91ae-364da2661108 | support.asus.com | |
| How-to guides: Wi-Fi CellSpot Router | T-Mobile Support | af854a3a-2127-422b-91ae-364da2661108 | support.t-mobile.com | |
| Full Disclosure: ASUS RT-XXXX SOHO routers expose admin password, fixed in 3.0.0.4.374.5517 | af854a3a-2127-422b-91ae-364da2661108 | seclists.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.