Vulnerabilities > CVE-2015-5994 - Credentials Management vulnerability in Mediabridge Medialink Mwn-Wapr300N Firmware 5.07.50

047910
CVSS 6.8 - MEDIUM
Attack vector
ADJACENT_NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
low complexity
mediabridge
CWE-255

Summary

The web management interface on Mediabridge Medialink MWN-WAPR300N devices with firmware 5.07.50 has a default password of admin for the admin account and a default password of password for the medialink account, which allows remote attackers to obtain administrative privileges by leveraging a Wi-Fi session.

Vulnerable Configurations

Part Description Count
OS
Mediabridge
1
Hardware
Mediabridge
1

Common Weakness Enumeration (CWE)