Vulnerability Description
Technicolor TC7337NET 08.89.17.23.03 devices allow remote attackers to discover passwords by sniffing the network for an "Authorization: Basic" HTTP header.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Technicolor | Tc7337Net Firmware | 08.89.17.23.03 |
| Technicolor | Tc7337Net | - |
Related Weaknesses (CWE)
References
- https://medium.com/%40felipeagromao/remote-control-cve-2020-10376-fed7b6b934e3
- https://medium.com/%40felipeagromao/remote-control-cve-2020-10376-fed7b6b934e3
FAQ
What is CVE-2020-10376?
CVE-2020-10376 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Technicolor TC7337NET 08.89.17.23.03 devices allow remote attackers to discover passwords by sniffing the network for an "Authorization: Basic" HTTP header.
How severe is CVE-2020-10376?
CVE-2020-10376 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-10376?
Check the references section above for vendor advisories and patch information. Affected products include: Technicolor Tc7337Net Firmware, Technicolor Tc7337Net.