Vulnerabilities > Intelbras > WRN 240 Firmware

DATE CVE VULNERABILITY TITLE RISK
2020-01-17 CVE-2019-19142 Missing Authentication for Critical Function vulnerability in Intelbras WRN 240 Firmware 2.0.0
Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.
network
low complexity
intelbras CWE-306
7.5
2017-09-07 CVE-2017-14219 Cross-site Scripting vulnerability in Intelbras WRN 240 Firmware
XSS (persistent) on the Intelbras Wireless N 150Mbps router with firmware WRN 240 allows attackers to steal wireless credentials without being connected to the network, related to userRpm/popupSiteSurveyRpm.htm and userRpm/WlanSecurityRpm.htm.
network
low complexity
intelbras CWE-79
6.1