CVE-2023-29681

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
01/05/2023
Last modified:
30/01/2025

Description

Cleartext Transmission in cookie:ecos_pw: in Tenda N301 v6.0, firmware v12.03.01.06_pt allows an authenticated attacker on the LAN or WLAN to intercept communications with the router and obtain the password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tenda:n301_firmware:12.02.01.61_multi:*:*:*:*:*:*:*
cpe:2.3:h:tenda:n301:6.0:*:*:*:*:*:*:*