Vulnerabilities > Intenogroup > Eg200 Firmware

DATE CVE VULNERABILITY TITLE RISK
2019-09-16 CVE-2019-13140 Files or Directories Accessible to External Parties vulnerability in Intenogroup Eg200 Firmware Eg200Wu7P1Uadamo3.16.41902261650
Inteno EG200 EG200-WU7P1U_ADAMO3.16.4-190226_1650 routers have a JUCI ACL misconfiguration that allows the "user" account to extract the 3DES key via JSON commands to ubus.
network
low complexity
intenogroup CWE-552
4.0