CVE-2009-2274

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
01/07/2009
Last modified:
09/04/2025

Description

The Huawei D100 allows remote attackers to obtain sensitive information via a direct request to (1) lan_status_adv.asp, (2) wlan_basic_cfg.asp, or (3) lancfg.asp in en/, related to use of JavaScript to protect against reading file contents.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:huawei:d100:-:*:*:*:*:*:*:*