CVE-2015-5995

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
31/12/2015
Last modified:
12/04/2025

Description

Mediabridge Medialink MWN-WAPR300N devices with firmware 5.07.50 and Tenda N3 Wireless N150 devices allow remote attackers to obtain administrative access via a certain admin substring in an HTTP Cookie header.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:tenda:n3_wireless_n150:*:*:*:*:*:*:*:*
cpe:2.3:o:mediabridge:medialink_mwn-wapr300n_firmware:*:*:*:*:*:*:*:* 5.07.50 (including)
cpe:2.3:h:mediabridge:medialink_mwn-wapr300n:*:*:*:*:*:*:*:*