Security Advisory

CVE-2020-29138

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-11-27 15:07:58
Last updated 2024-08-04 16:48:01
Assigner mitre
State PUBLISHED

Description

Incorrect Access Control in the configuration backup path in SAGEMCOM F@ST3486 NET DOCSIS 3.0, software NET_4.109.0, allows remote unauthenticated users to download the router configuration file via the /backupsettings.conf URI, when any valid session is running.