• KZTech/JatonTec/Neotel JT3500V 4G LTE CPE 2.0.1 Unauthenticated Log Dis

    From Sven@21:1/5 to All on Fri Mar 19 18:08:17 2021
    XPost: alt.hackers.malicious

    2021/03/19 16:49:20 GMT

    Description: KZTech/JatonTec/Neotel JT3500V 4G LTE CPE version 2.0.1 has an unprotected
    web management server that is vulnerable to sensitive information disclosure vulnerability. An unauthenticated attacker can visit the syslog page and disclose the
    webserver's log file containing system information running on the device.

    https://packetstormsecurity.com/files/161887/ZSL-2021-5641.txt

    Source: Packet Storm Security

    -- Sven Exploits

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)