Post

Fengwang Internet Enterprise Level Router V4 31 Password Leakage Vulnerability Cve 2019 16313

Fengwang Internet Enterprise Level Router V4 31 Password Leakage Vulnerability Cve 2019 16313

Fengwang Internet Enterprise-level router v4.31 password leakage vulnerability CVE-2019-16313

Vulnerability Description

Fengwang Internet enterprise-level router v4.31 has unauthorized access to the interface, which causes the attacker to obtain the router account and password through this vulnerability.

Vulnerability Impact

Beiwang Internet Enterprise Router v4.31

Network surveying and mapping

Vulnerability reappears

img

After logging in on the login page, you can see that the account password exists on the interface.

img

And there is unauthorized access to /action/usermanager.htm, you can obtain the account password through direct access

img

  • ✅ When there is no vulnerability, the state value is 3
This post is licensed under CC BY 4.0 by the author.