HIGH · 7.5

CVE-2019-16313

ifw8 Router ROM v4.31 allows credential disclosure by reading the action/usermanager.htm HTML source code.

Vulnerability Description

ifw8 Router ROM v4.31 allows credential disclosure by reading the action/usermanager.htm HTML source code.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
Ifw8Fr6 Firmware4.31
Ifw8Fr6-
Ifw8Fr8 Firmware4.31
Ifw8Fr8-
Ifw8Fr5 Firmware4.31
Ifw8Fr5-
Ifw8Fr5-E Firmware4.31
Ifw8Fr5-E-
Ifw8Fr6-S Firmware4.31
Ifw8Fr6-S-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-16313?

CVE-2019-16313 is a vulnerability with a CVSS score of 7.5 (HIGH). ifw8 Router ROM v4.31 allows credential disclosure by reading the action/usermanager.htm HTML source code.

How severe is CVE-2019-16313?

CVE-2019-16313 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-16313?

Check the references section above for vendor advisories and patch information. Affected products include: Ifw8 Fr6 Firmware, Ifw8 Fr6, Ifw8 Fr8 Firmware, Ifw8 Fr8, Ifw8 Fr5 Firmware.