Vulnerabilities > Iball > IB Wrb302N Firmware > ib.wrb302n20122017

DATE CVE VULNERABILITY TITLE RISK
2019-05-28 CVE-2018-20008 Incorrect Permission Assignment for Critical Resource vulnerability in Iball Ib-Wrb302N Firmware Ibwrb302N20122017
iBall Baton iB-WRB302N20122017 devices have improper access control over the UART interface, allowing physical attackers to discover Wi-Fi credentials (plain text) and the web-console password (base64) via the debugging console.
low complexity
iball CWE-732
6.8