PoC Index

CVE-2009-4197

MEDIUM 4.7EPSS 0.5%

rpwizPppoe.htm in Huawei MT882 V100R002B020 ARG-T running firmware 3.7.9.98 contains a form that does not disable the autocomplete setting for the password parameter, which makes it easier for local users or physically proximate attackers to obtain the password from web browsers that support autocomplete.

CVSS v2.0
4.7 MEDIUMAV:L/AC:M/Au:N/C:C/I:N/A:N
EPSS
0.47% chance of exploitation in the next 30 days, 39th percentile
Published
2009-12-04
Updated
2024-08-07

Proof-of-concept exploits (1)

ExploitDB entries (1)

References

Related