CVE-2019-3915 Vulnerability Details

  /     /     /  

CVE-2019-3915 Metadata Quick Info

CVE Published: 11/04/2019 | CVE Updated: 04/08/2024 | CVE Year: 2019
Source: tenable | Vendor: Verizon | Product: Fios Quantum Gateway (G1100)
Status : PUBLISHED

CVE-2019-3915 Description

Authentication Bypass by Capture-replay vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an unauthenticated attacker with adjacent network access to intercept and replay login requests to gain access to the administrative web interface.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Login Replay
Source: Verizon

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).