CVE-2021-47726
Severity CVSS v4.0:
HIGH
Type:
CWE-522
Insufficiently Protected Credentials
Publication date:
31/12/2025
Last modified:
31/12/2025
Description
NuCom 11N Wireless Router 5.07.90 contains a privilege escalation vulnerability that allows non-privileged users to access administrative credentials through the configuration backup endpoint. Attackers can send a crafted HTTP GET request to the backup configuration page with a specific cookie to retrieve and decode the admin password in Base64 format.
Impact
Base Score 4.0
8.70
Severity 4.0
HIGH
Base Score 3.x
7.50
Severity 3.x
HIGH



