RSS   Vulnerabilities for
'Fios quantum gateway g1100 firmware'
   RSS

2019-04-11
 
CVE-2019-3916

CWE-200
 

 
Information disclosure vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an remote, unauthenticated attacker to retrieve the value of the password salt by simply requesting an API URL in a web browser (e.g. /api).

 
 
CVE-2019-3915

 

 
Authentication Bypass by Capture-replay vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an unauthenticated attacker with adjacent network access to intercept and replay login requests to gain access to the administrative web interface.

 
 
CVE-2019-3914

CWE-77
 

 
Remote command injection vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows a remote, authenticated attacker to execute arbitrary commands on the target device by adding an access control rule for a network object with a crafted hostname.

 

 >>> Vendor: Verizon 5 Products
Fios actiontec mi424wr-gen31 router
Fios actiontec mi424wr-gen31 router firmware
Wireless network extender
Fios quantum gateway g1100 firmware
Serialize-javascript


Copyright 2024, cxsecurity.com

 

Back to Top