CVE Vulnerabilities

CVE-2019-3404

Published: Mar 04, 2020 | Modified: Aug 24, 2020
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

By adding some special fields to the uri ofrouter app function, the user could abuse background app cgi functions withoutauthentication. This affects 360 router P0 and F5C.

Affected Software

Name Vendor Start Version End Version
P0_router_firmware 360 3.1.1.65150 (including) 3.1.1.65150 (including)

References