peter bassill · operator
$ cve CVE-2019-6441 JSON

CVE-2019-6441 EXPLOIT

9.8
CRITICAL · CVSS 3.0 · EPSS 53.6% (pctl 99)

Patch early

A public exploit exists.

Description

An issue was discovered on Shenzhen Coship RT3050 4.0.0.40, RT3052 4.0.0.48, RT7620 10.0.0.49, WM3300 5.0.0.54, and WM3300 5.0.0.55 devices. The password reset functionality of the router doesn't have backend validation for the current password and doesn't require any type of authentication. By making a POST request to the apply.cgi file of the router, the attacker can change the admin username and password of the router.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS53.61% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-287
On CISA KEVno
Public exploityes
Published2019-03-21
Last modified2026-06-17

Affected (8)

VendorProduct
coshiprt3050
coshiprt3050 firmware
coshiprt3052
coshiprt3052 firmware
coshiprt7620
coshiprt7620 firmware
coshipwm3300
coshipwm3300 firmware

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD