Vulnerabilities > CVE-2020-15832 - Unspecified vulnerability in Mofinetwork Mofi4500-4Gxelte Firmware 4.1.5Std

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
mofinetwork

Summary

An issue was discovered on Mofi Network MOFI4500-4GXeLTE 4.1.5-std devices. The poof.cgi script contains undocumented code that provides the ability to remotely reboot the device. An adversary with the private key (but not the root password) can remotely reboot the device.

Vulnerable Configurations

Part Description Count
OS
Mofinetwork
1
Hardware
Mofinetwork
1