CVE-2018-25145
MEDIUMDescription
Microhard Systems IPn4G 1.1.0 contains a configuration file disclosure vulnerability that allows authenticated attackers to download sensitive system configuration files. Attackers can retrieve configuration files from multiple directories including '/www', '/etc/m_cli/', and '/tmp' to access system passwords and network settings.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| microhardcorp | ipn4g_firmware |
| microhardcorp | ipn4g |
| microhardcorp | ipn3gb_firmware |
| microhardcorp | ipn3gb |
| microhardcorp | ipn4gb_firmware |
| microhardcorp | ipn4gb |
| microhardcorp | ipn4gb_firmware |
| microhardcorp | ipn4gb |
| microhardcorp | ipn4gb_firmware |
| microhardcorp | ipn4gb |
| microhardcorp | bullet-3g_firmware |
| microhardcorp | bullet-3g |
| microhardcorp | vip4gb_firmware |
| microhardcorp | vip4gb |
| microhardcorp | vip4gb_firmware |
| microhardcorp | vip4gb |
| microhardcorp | vip4gb_wifi-n_firmware |
| microhardcorp | vip4gb_wifi-n |
| microhardcorp | bullet-3g_firmware |
| microhardcorp | bullet-3g |
| microhardcorp | bullet-lte_firmware |
| microhardcorp | bullet-lte |
| microhardcorp | ipn3gii_firmware |
| microhardcorp | ipn3gii |
| microhardcorp | ipn4gii_firmware |
| microhardcorp | ipn4gii |
| microhardcorp | bulletplus_firmware |
| microhardcorp | bulletplus |
| microhardcorp | dragon-lte_firmware |
| microhardcorp | dragon-lte |
References
Frequently Asked Questions
What is CVE-2018-25145? +
How severe is CVE-2018-25145? +
What products are affected by CVE-2018-25145? +
How do I check if I'm vulnerable to CVE-2018-25145? +
Related Vulnerabilities
Files or Directories Accessible to External Parties, Server-Side Request Forgery (SSRF) vulnerability in Apache Flink Kubernetes Operator. The FlinkSessionJob jarURI …
Potential privilege escalation vulnerability in Revenera InstallShield versions 2022 R2 and 2021 R2 due to adding InstallScript custom action to …
The ReadFile endpoint of the firmware for Mennekes Smart / Premium Chargingpoints can be abused to read arbitrary files from …
Local File Inclusion vulnerability in Ready's attachment upload panel allows low privileged user to provide link to a local file …
A directory traversal vulnerability exists in ColoradoFTP Server ≤ 1.3 Build 8 for Windows, allowing unauthenticated attackers to read or …
A vulnerability exists in Sitecore Experience Manager (XM), Experience Platform (XP), Experience Commerce (XC), and Managed Cloud that could allow …