CVE-2018-13319

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
26/11/2018
Last modified:
31/12/2018

Description

Incorrect access control in get_portal_info in Buffalo TS5600D1206 version 3.61-0.10 allows attackers to determine sensitive device information via an unauthenticated POST request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:buffalo:ts5600d1206_firmware:3.61-0.10:*:*:*:*:*:*:*
cpe:2.3:h:buffalo:ts5600d1206:-:*:*:*:*:*:*:*