Vulnerabilities > CVE-2013-5037 - Credentials Management vulnerability in HOT Hotbox Router and Hotbox Router Firmware

047910
CVSS 3.3 - LOW
Attack vector
ADJACENT_NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
low complexity
hot
CWE-255
exploit available

Summary

The HOT HOTBOX router with software 2.1.11 has a default WPS PIN of 12345670, which makes it easier for remote attackers to obtain the WPA or WPA2 pre-shared key via EAP messages.

Vulnerable Configurations

Part Description Count
OS
Hot
1
Hardware
Hot
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionSagemcom F@st 3184 2.1.11 - Multiple Vulnerabilities. CVE-2013-5037,CVE-2013-5038,CVE-2013-5039,CVE-2013-5218,CVE-2013-5219,CVE-2013-5220. Webapps exploit fo...
idEDB-ID:29518
last seen2016-02-03
modified2013-11-08
published2013-11-08
reporterOz Elisyan
sourcehttps://www.exploit-db.com/download/29518/
titleSagemcom F@st 3184 2.1.11 - Multiple Vulnerabilities

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/123901/hotbox-dosxsrftraversal.txt
idPACKETSTORM:123901
last seen2016-12-05
published2013-11-04
reporterOz Elisyan
sourcehttps://packetstormsecurity.com/files/123901/HOTBOX-2.1.11-CSRF-Traversal-Denial-Of-Service.html
titleHOTBOX 2.1.11 CSRF / Traversal / Denial Of Service

Seebug

bulletinFamilyexploit
descriptionNo description provided by source.
idSSV:83016
last seen2017-11-19
modified2014-07-01
published2014-07-01
reporterRoot
sourcehttps://www.seebug.org/vuldb/ssvid-83016
titleSagemcom F@st 3184 2.1.11 - Multiple Vulnerabilities