We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2020-11447



Description

An issue was discovered on Bell HomeHub 3000 SG48222070 devices. Remote authenticated users can retrieve the serial number via cgi/json-req - this is an information leak because the serial number is intended to prove an actor's physical access to the device.

Reserved 2020-04-01 | Published 2023-11-17 | Updated 2024-09-04 | Assigner mitre

References

support.bell.ca/...elp/Access_control_in_the_Home_Hub_modems

0xem.ma/posts/HH3K-CVE/

cve.org (CVE-2020-11447)

nvd.nist.gov (CVE-2020-11447)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2020-11447

Support options

Helpdesk Chat, Email, Knowledgebase
Subscribe to our newsletter to learn more about our work.