Vigil@nce - Cisco SPA100 Series ATA: information disclosure via Web Management Interface
November 2019 by Vigil@nce
This bulletin was written by Vigil@nce : https://vigilance.fr/offer/Computer-vulnerability-database-and-alert
SYNTHESIS OF THE VULNERABILITY
Impacted products: Cisco ATA.
Severity: 1/4.
Consequences: data reading.
Provenance: user account.
Confidence: confirmed by the editor (5/5).
Creation date: 17/10/2019.
DESCRIPTION OF THE VULNERABILITY
An attacker can bypass access restrictions to data via Web
Management Interface of Cisco SPA100 Series ATA, in order to
obtain sensitive information.
ACCESS TO THE FULL VIGIL@NCE BULLETIN