CVE-2019-17354
Summary
| CVE | CVE-2019-17354 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-10-09 12:15:00 UTC |
| Updated | 2020-08-24 17:37:00 UTC |
| Description | wan.htm page on Zyxel NBG-418N v2 with firmware version V1.00(AARP.9)C0 can be accessed directly without authentication, which can lead to disclosure of information about the WAN, and can also be leveraged by an attacker to modify data fields of the page. |
Risk And Classification
Problem Types: CWE-306
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Zyxel | Nbg-418n V2 | - | All | All | All |
| Hardware | Zyxel | Nbg-418n V2 | - | All | All | All |
| Operating System | Zyxel | Nbg-418n V2 Firmware | 1.00(aarp.9)c0 | All | All | All |
| Operating System | Zyxel | Nbg-418n V2 Firmware | 1.00\(aarp.9\)c0 | All | All | All |
| Operating System | Zyxel | Nbg-418n V2 Firmware | 1.00\(aarp.9\)c0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 404 Error | ZyXEL | MISC | www.zyxel.com | Product |
| Zyxel-NBG-418N-v2/CVE-2019-17354 at master · d0x0/Zyxel-NBG-418N-v2 · GitHub | MISC | github.com | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.