CVE-2013-3610

qis/QIS_finish.htm on the ASUS RT-N10E router with firmware before 2.0.0.25 does not require authentication, which allows remote attackers to discover the administrator password via a direct request.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.1 UNKNOWN
ADJACENT_NETWORK
LOW
AV:A/AC:L/Au:N/C:C/I:N/A:N
certccCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 27%
VendorProductVersion
asusrt-n10e_firmware
𝑥
≤ 2.0.0.24
asusrt-n10e_firmware
2.0.0.7
asusrt-n10e_firmware
2.0.0.10
asusrt-n10e_firmware
2.0.0.16
asusrt-n10e_firmware
2.0.0.19
asusrt-n10e_firmware
2.0.0.20
asusrt-n10e
-
𝑥
= Vulnerable software versions