CVE-2019-16340
critical · 9.8Belkin Linksys Velop 1.1.8.192419 devices allows remote attackers to discover the recovery key via a direct request for the /sysinfo_json.cgi URI.
9.8
CVSS
19.3%
EPSS (exploit prob.)
97th
EPSS percentile
2019-11-21
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-425
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| linksys | velop_whw0303_firmware | 1.1.8.192419 |
| linksys | velop_whw0303 | all versions |
| linksys | velop_whw0302_firmware | 1.1.8.192419 |
| linksys | velop_whw0302 | all versions |
| linksys | velop_whw0301_firmware | 1.1.8.192419 |
| linksys | velop_whw0301 | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://s3.amazonaws.com/downloads.linksys.com/support/assets/releasenotes/WHW03_A03_Velop_Customer_Release_Notes_1.1.9.195026.txt
- https://puzzor.github.io/Linksys-Velop-Authentication-bypass
- https://www.linksys.com/us/support-article?articleNum=207568
- http://s3.amazonaws.com/downloads.linksys.com/support/assets/releasenotes/WHW03_A03_Velop_Customer_Release_Notes_1.1.9.195026.txt
- https://puzzor.github.io/Linksys-Velop-Authentication-bypass
- https://www.linksys.com/us/support-article?articleNum=207568
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2019-16340