216.73.216.233

CVE-2020-37093

· Published 03/02/2026 22:16 · Modified 04/02/2026 16:33

Labels: CVE-2020-37093 2026-02-03CVE-2020-37093CWE-201[email protected]

Essential information

Published
03/02/2026 22:16
Modified
04/02/2026 16:33
Author
Creator
CVSS
8.7 HIGH (v3) 8.7 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Netis E1+ 1.2.32533 contains an information disclosure vulnerability that allows unauthenticated attackers to retrieve WiFi passwords through the netcore_get.cgi endpoint. Attackers can send a GET request to the endpoint to extract sensitive network credentials including SSID and WiFi passwords in plain text.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
netis / e1+ cpe:2.3:a:netis:e1+:1.2.32533:*:*:*:*:*:*:*

References