Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-0112

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2005-0112
Last Modified 05 Sep 2008 04:45:21
Published 14 Apr 2005 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2005-0112

Summary

The web-based administrative interface for 3Com OfficeConnect Wireless 11g Access Point (AP) 1.00.08, and possibly earlier versions before 1.03.07A, allows remote attackers to bypass authentication and obtain sensitive information by directly accessing the (1) config.bin (2) profile.wlp?PN=ggg or (3) event.logs URLs.

Vulnerable Systems


References

XF - 3com-officeconnect-information-disclosure(18994)

BID - 12322

IDEFENSE - 20050120 3Com OfficeConnect Wireless 11g AP Information Disclosure Vulnerability

SECTRACK - 1012958

SECUNIA - 13942


Last Updated: 27 May 2016 10:39:40