S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jun 3, 2025

CVE-2017-14942 Scanner

CVE-2017-14942 Scanner - Authentication Bypass vulnerability in Intelbras WRN 150

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
2.2k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2017-14942
9.8
CVSS

Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct request for cgi-bin/DownloadCfg/RouterCfm.cfg containing an admin:language=pt cookie.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Intelbras WRN 150 is a router commonly used in residential and small office environments to provide internet connectivity. It is designed for ease of use and typically employed by non-technical users. The product is manufactured by Intelbras, a company known for telecommunications equipment. It includes various features meant to cater to basic internet routing needs while also aiming to provide security features. The router is often found in settings where cost-effective solutions are required. It is widely recognized in regions that prioritize accessible network solutions.

The vulnerability in question is an authentication bypass issue. By manipulating a cookie, an attacker can bypass authentication controls. This kind of vulnerability is particularly concerning because it allows unauthorized access to sensitive information. The authentication bypass involves manipulation of language preferences set in cookies. Such vulnerabilities pose significant risk as they undermine one of the fundamental security controls of the device. Detection and mitigation are critical to ensure network integrity.

Technical details of this vulnerability involve cookie manipulation, specifically the 'admin:language' cookie. The manipulation allows unauthorized retrieval of the router's configuration file. The vulnerability is exploited by crafting a specific GET request. Key elements, such as cookies, play a central role in the successful bypass of authentication. Successful exploitation is marked by obtaining sensitive configuration data, often identifiable through certain keywords in the file. The severity of this vulnerability lies in its ability to compromise network settings without proper authentication.

Exploitation of this vulnerability can lead to unauthorized network access. Attackers may modify configurations, leading to potential network outages or interception of data traffic. Sensitive information stored in configuration files could also be harvested, compromising the security posture of the network. In severe cases, it could allow further infiltration into connected devices. The risk extends to the privacy of network users, highlighting the need for effective countermeasures. Regular monitoring for unauthorized access is advised to protect the network.

REFERENCES

Solution Advice
  • Update the Intelbras WRN 150 router firmware to the latest version to patch the vulnerability.
  • Regularly monitor and analyze network traffic for unauthorized access attempts.
  • Implement a strong password policy and regularly update authentication credentials.
  • Introduce additional layers of security, such as VPN, to enhance network security.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2017-14942 Scanner - Authentication Bypass vulnerability in Intelbras WRN 150 | S4E