CVE Feed

    Dashboard / CVE / CVE-2019-19823

    CVE-2019-19823

    A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords in flash memory and in a file. This affects TOTOLINK A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0, N300RT through 3.4.0, N200RE through 4.0.0, N150RT through 3.4.0, and N100RE through 3.4.0; Rutek RTK 11N AP through 2019-12-12; Sapido GR297n through 2019-12-12; CIK TELECOM MESH ROUTER through 2019-12-12; KCTVJEJU Wireless AP through 2019-12-12; Fibergate FGN-R2 through 2019-12-12; Hi-Wifi MAX-C300N through 2019-12-12; HCN MAX-C300N through 2019-12-12; T-broad GN-866ac through 2019-12-12; Coship EMTA AP through 2019-12-12; and IO-Data WN-AC1167R through 2019-12-12.

    Published:Jan 27, 2020
    Last Modified:Nov 21, 2024
    EPS:Jan 27, 2020
    EPSS Score:0.01361
    CVSS Score:7.5

    Affected Products

    Vendor
    Ciktel
    Product
    Mesh Router
    Vendor
    Ciktel
    Product
    Mesh Router Firmware
    Vendor
    Coship
    Product
    Emta Ap
    Vendor
    Coship
    Product
    Emta Ap Firmwre
    Vendor
    Fg-products
    Product
    Fgn-r2
    Vendor
    Fg-products
    Product
    Fgn-r2 Firmware
    Vendor
    Hcn Max-c300n Project
    Product
    Hcn Max-c300n
    Vendor
    Hcn Max-c300n Project
    Product
    Hcn Max-c300n Firmware
    Vendor
    Hiwifi
    Product
    Max-c300n
    Vendor
    Hiwifi
    Product
    Max-c300n Firmware
    Vendor
    Iodata
    Product
    Wn-ac1167r
    Vendor
    Iodata
    Product
    Wn-ac1167r Firmwre
    Vendor
    Kctvjeju
    Product
    Wireless Ap
    Vendor
    Kctvjeju
    Product
    Wireless Ap Firmware
    Vendor
    Realtek
    Product
    Rtk 11n Ap
    Vendor
    Realtek
    Product
    Rtk 11n Ap Firmware
    Vendor
    Sapido
    Product
    Gr297n
    Vendor
    Sapido
    Product
    Gr297n Firmware
    Vendor
    Tbroad
    Product
    Gn-866ac
    Vendor
    Tbroad
    Product
    Gn-866ac Firmware
    Vendor
    Totolink
    Product
    A3002ru
    Vendor
    Totolink
    Product
    A3002ru Firmware
    Vendor
    Totolink
    Product
    A702r
    Vendor
    Totolink
    Product
    A702r Firmware
    Vendor
    Totolink
    Product
    N100re
    Vendor
    Totolink
    Product
    N100re Firmware
    Vendor
    Totolink
    Product
    N150rt
    Vendor
    Totolink
    Product
    N150rt Firmware
    Vendor
    Totolink
    Product
    N200re
    Vendor
    Totolink
    Product
    N200re Firmware
    Vendor
    Totolink
    Product
    N300rt
    Vendor
    Totolink
    Product
    N300rt Firmware
    Vendor
    Totolink
    Product
    N301rt
    Vendor
    Totolink
    Product
    N301rt Firmware
    Vendor
    Totolink
    Product
    N302r
    Vendor
    Totolink
    Product
    N302r Firmware

    References

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High