Lucene search

K
cveMitreCVE-2005-0112
HistoryApr 14, 2005 - 4:00 a.m.

CVE-2005-0112

2005-04-1404:00:00
mitre
web.nvd.nist.gov
27
3com
officeconnect
wireless
11g
access point
authentication bypass
remote attack
information disclosure
cve-2005-0112

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.002

Percentile

60.9%

The web-based administrative interface for 3Com OfficeConnect Wireless 11g Access Point (AP) 1.00.08, and possibly earlier versions before 1.03.07A, allows remote attackers to bypass authentication and obtain sensitive information by directly accessing the (1) config.bin (2) profile.wlp?PN=ggg or (3) event.logs URLs.

Affected configurations

Nvd
Node
3com3crwe454g72Match1.0.2
OR
3com3crwe454g72Match1.0.2.11
OR
3com3crwe454g72Match1.0.3.5
VendorProductVersionCPE
3com3crwe454g721.0.2cpe:2.3:h:3com:3crwe454g72:1.0.2:*:*:*:*:*:*:*
3com3crwe454g721.0.2.11cpe:2.3:h:3com:3crwe454g72:1.0.2.11:*:*:*:*:*:*:*
3com3crwe454g721.0.3.5cpe:2.3:h:3com:3crwe454g72:1.0.3.5:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.002

Percentile

60.9%

Related for CVE-2005-0112