Description
NuCom 11N Wireless Router 5.07.90 contains a privilege escalation vulnerability that allows non-privileged users to access administrative credentials through the configuration backup endpoint. Attackers can send a crafted HTTP GET request to the backup configuration page with a specific cookie to retrieve and decode the admin password in Base64 format.
Problem types
Insufficiently Protected Credentials
Product status
Credits
LiquidWorm as Gjoko Krstic of Zero Science Lab
References
www.exploit-db.com/exploits/49634 (ExploitDB-49634)
www.nucom.es (NuCom Vendor Homepage)
www.zeroscience.mk/en/vulnerabilities/ZSL-2021-5629.php (Zero Science Lab Disclosure (ZSL-2021-5629))
www.vulncheck.com/...ege-escalation-via-configuration-backup (VulnCheck Advisory: NuCom 11N Wireless Router 5.07.90 Privilege Escalation via Configuration Backup)
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.