Security Advisory

CVE-2020-37093

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-03 22:01:52
Last updated 2026-02-04 19:39:01
Assigner VulnCheck
State PUBLISHED

Description

Netis E1+ 1.2.32533 contains an information disclosure vulnerability that allows unauthenticated attackers to retrieve WiFi passwords through the netcore_get.cgi endpoint. Attackers can send a GET request to the endpoint to extract sensitive network credentials including SSID and WiFi passwords in plain text.