Description
main_internet.php on the Western Digital My Net N600 and N750 with firmware 1.03.12 and 1.04.16, and the N900 and N900C with firmware 1.05.12, 1.06.18, and 1.06.28, allows remote attackers to discover the cleartext administrative password by reading the "var pass=" line within the HTML source code.
Published: 2013-07-31
Score: 4.3 Medium
EPSS: 8.3% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2013-4848 main_internet.php on the Western Digital My Net N600 and N750 with firmware 1.03.12 and 1.04.16, and the N900 and N900C with firmware 1.05.12, 1.06.18, and 1.06.28, allows remote attackers to discover the cleartext administrative password by reading the "var pass=" line within the HTML source code.
History

No history.

Subscriptions

Westerndigital My Net N750 My Net N900 My Net N900c
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-06T16:59:41.317Z

Reserved: 2013-07-29T00:00:00.000Z

Link: CVE-2013-5006

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2013-07-31T13:20:19.287

Modified: 2025-04-11T00:51:21.963

Link: CVE-2013-5006

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses