CVE-2023-29680

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
01/05/2023
Last modified:
30/01/2025

Description

Cleartext Transmission in set-cookie:ecos_pw: Tenda N301 v6.0, Firmware v12.02.01.61_multi allows an authenticated attacker on the LAN or WLAN to intercept communications with the router and obtain the password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tenda:n301_firmware:12.03.01.06_pt:*:*:*:*:*:*:*
cpe:2.3:h:tenda:n301:6.0:*:*:*:*:*:*:*