CVE-2019-6441 EXPLOIT
9.8
CRITICAL · CVSS 3.0 · EPSS 53.6% (pctl 99)
Patch early
A public exploit exists.
Description
An issue was discovered on Shenzhen Coship RT3050 4.0.0.40, RT3052 4.0.0.48, RT7620 10.0.0.49, WM3300 5.0.0.54, and WM3300 5.0.0.55 devices. The password reset functionality of the router doesn't have backend validation for the current password and doesn't require any type of authentication. By making a POST request to the apply.cgi file of the router, the attacker can change the admin username and password of the router.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 53.61% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-287 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2019-03-21 |
| Last modified | 2026-06-17 |
Affected (8)
| Vendor | Product |
|---|---|
| coship | rt3050 |
| coship | rt3050 firmware |
| coship | rt3052 |
| coship | rt3052 firmware |
| coship | rt7620 |
| coship | rt7620 firmware |
| coship | wm3300 |
| coship | wm3300 firmware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Coship Wireless Router 4.0.0.48 / 4.0.0.40 / 5.0.0.54 / 5.0.0.55 / 10.0.0.49 - Unauthenticated Admin Password Reset | 2019-01-16 |
References
- http://packetstormsecurity.com/files/151202/Coship-Wireless-Router-Unauthenticated-Admin-Password-Reset.html
- https://packetstormsecurity.com/files/151202/Coship-Wireless-Router-Unauthenticated-Admin-Password-Reset.html
- https://vulmon.com/exploitdetails?qidtp=EDB&qid=46180
- https://www.anquanke.com/vul/id/1451446
- https://www.exploit-db.com/exploits/46180
- https://www.exploit-db.com/exploits/46180/
- http://packetstormsecurity.com/files/151202/Coship-Wireless-Router-Unauthenticated-Admin-Password-Reset.html
- https://packetstormsecurity.com/files/151202/Coship-Wireless-Router-Unauthenticated-Admin-Password-Reset.html
- https://vulmon.com/exploitdetails?qidtp=EDB&qid=46180
- https://www.anquanke.com/vul/id/1451446
- https://www.exploit-db.com/exploits/46180
- https://www.exploit-db.com/exploits/46180/
→ the Explorer · watch your stack · NVD