CVE-2018-14782 describes a critical vulnerability in NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) firmware versions 2.0.29.11 and prior, allowing unauthenticated access to sensitive configuration files and profiles. With a CVSS score of 7.5 (High), this vulnerability is easily exploitable over the network with low attack complexity, potentially leading to full compromise of device configuration. While no public exploit code or active exploitation has been observed, its presence in a SecurityWeek article and community discussion indicates awareness.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.0.29.11CPE matchmatch criteria | cpe:2.3:o:netcommwireless:nwl-25_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.