CVE ID | |
CVSS SCORE | 10.0, AV:N/AC:L/Au:N/C:C/I:C/A:C |
AFFECTED VENDORS |
ARRIS |
AFFECTED PRODUCTS |
VAP2500 |
VULNERABILITY DETAILS |
The specific flaw exists within the authentication validation mechanism of the used in the list_mac_address.php management portal page. The issue lies in the failure to stop processing the page after an unsuccessful attempt to validate authentication. An attacker can leverage this vulnerability to execute code under the context of root.
|
ADDITIONAL DETAILS |
|
DISCLOSURE TIMELINE |
|
CREDIT | Ricky "HeadlessZeke" Lawshae |