Impact
The vulnerability involves missing authentication on the /goform/ate API (CWE-306). An attacker who can reach the device on a local network can request this endpoint and receive the device’s configuration data, including the administrator password. The disclosed password can be used to authenticate as an administrator and take full control over the device.
Affected Systems
The vulnerability affects Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 and devices running Tenda F3 V2.0 firmware. Any deployment of these products installed on a local network is susceptible.
Risk and Exploitability
With a CVSS score of 7.1 the vulnerability is classified as high severity. The EPSS score is below 1% and it is not listed in CISA’s Known Exploited Vulnerabilities catalog. The likely attack vector is a local network adversary that can reach the device; the exploit requires only network connectivity and no privileged credentials. Once the attacker accesses the endpoint, the information disclosed can be used directly to authenticate and gain administrative control.
OpenCVE Enrichment