CVE-2021-42886

TOTOLINK EX1200T V4.1.2cu.5215 contains an information disclosure vulnerability where an attacker can get the apmib configuration file without authorization, and usernames and passwords can be found in the decoded file.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:totolink:ex1200t_firmware:4.1.2cu.5215:*:*:*:*:*:*:*
cpe:2.3:h:totolink:ex1200t:-:*:*:*:*:*:*:*

History

13 Jun 2022, 18:27

Type Values Removed Values Added
References (MISC) https://github.com/p1Kk/vuln/blob/main/totolink_ex1200t_exportsettings_leak.md - (MISC) https://github.com/p1Kk/vuln/blob/main/totolink_ex1200t_exportsettings_leak.md - Exploit, Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
First Time Totolink
Totolink ex1200t
Totolink ex1200t Firmware
CWE CWE-200
CPE cpe:2.3:o:totolink:ex1200t_firmware:4.1.2cu.5215:*:*:*:*:*:*:*
cpe:2.3:h:totolink:ex1200t:-:*:*:*:*:*:*:*

03 Jun 2022, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-06-03 12:15

Updated : 2023-12-10 14:22


NVD link : CVE-2021-42886

Mitre link : CVE-2021-42886

CVE.ORG link : CVE-2021-42886


JSON object : View

Products Affected

totolink

  • ex1200t
  • ex1200t_firmware
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor