HTTP: Humax HG100R Wi-Fi Router CVE-2017-11435 Information Disclosure

This signature detects attempts to exploit a known vulnerability against Humax HG100R Wi-Fi Router. A successful attack can lead to Information Disclosure.

Extended Description

The Humax Wi-Fi Router model HG100R-* 2.0.6 is prone to an authentication bypass vulnerability via specially crafted requests to the management console. The bug is exploitable remotely when the router is configured to expose the management console. The router is not validating the session token while returning answers for some methods in url '/api'. An attacker can use this vulnerability to retrieve sensitive information such as private/public IP addresses, SSID names, and passwords.

References

CVE: CVE-2017-11435

Short Name
HTTP:INFO-LEAK:HUMAX-HG100R-ID
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2017-11435 Disclosure HG100R Humax Information Router Wi-Fi
Release Date
02/28/2019
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3415
False Positive
Unknown
CVSS Score

7.5

Found a potential security threat?