Improper access control vulnerability in Rakuten Casa version AP_F_V1_4_1 or AP_F_V2_0_0 allows a remote attacker to obtain the information stored in the product because the product is set to accept HTTP connections from the WAN side by default.
oryginał ENCVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NRakuten Casa
APPRakutenap_f_v1_4_1ap_f_v2_0_0
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Powiązane podatności
CVE-2022-29525CRITICAL9.8PL ✓ten sam produkt
Rakuten Casa — zakodowane na stałe hasło umożliwia zdalny dostęp root
CVE-2022-28704HIGH7.2ten sam produkt
Improper access control vulnerability in Rakuten Casa version AP_F_V1_4_1 or AP_F_V2_0_0 allows a remote attac...
CVE-2025-13476CRITICAL9.8PL ✓ten sam vendor
Rakuten Viber: statyczny fingerprint TLS umożliwia identyfikację ruchu proxy
CVE-2020-14049HIGH7.5ten sam vendor
Viber for Windows up to 13.2.0.39 does not properly quote its custom URI handler. A malicious website could la...
CVE-2019-18800HIGH8.8ten sam vendor
Viber through 11.7.0.5 allows a remote attacker who can capture a victim's internet traffic to steal their Vib...