This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to transmission of authentication credentials in plaintext over the network. A remote attacker could exploit this vulnerability by eavesdropping on the victim’s network traffic to extract username and password from the web interface (Password Reset Page) of the vulnerable targeted system.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: CERT-In
Published: 2024-01-17T07:26:46.152Z
Updated: 2024-08-02T22:40:34.343Z
Reserved: 2023-12-22T09:53:53.228Z
Link: CVE-2023-51741
Vulnrichment
No data.
NVD
Status : Modified
Published: 2024-01-17T08:15:38.223
Modified: 2024-11-21T08:38:42.820
Link: CVE-2023-51741
Redhat
No data.