We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2020-11447



Assignermitre
Reserved2020-04-01
Published2023-11-17
Updated2024-09-04

Description

An issue was discovered on Bell HomeHub 3000 SG48222070 devices. Remote authenticated users can retrieve the serial number via cgi/json-req - this is an information leak because the serial number is intended to prove an actor's physical access to the device.

References

https://support.bell.ca/Internet/Connection-help/Access_control_in_the_Home_Hub_modems

https://0xem.ma/posts/HH3K-CVE/

cve.org CVE-2020-11447

nvd.nist.gov CVE-2020-11447

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2020-11447
Subscribe to our newsletter to learn more about our work.