Vulnerabilities > CVE-2021-45842 - Unspecified vulnerability in Terra-Master TOS 4.2.152107141517

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
terra-master

Summary

It is possible to obtain the first administrator's hash set up in Terramaster F4-210, F2-210 TOS 4.2.X (4.2.15-2107141517) on the system as well as other information such as MAC address, internal IP address etc. by performing a request to the /module/api.php?mobile/wapNasIPS endpoint.

Vulnerable Configurations

Part Description Count
OS
Terra-Master
1
Hardware
Terra-Master
2