CVE-2014-9303 describes a critical information disclosure vulnerability in the EntryPass N5200 Active Network Control Panel, allowing remote attackers to read device memory. This flaw enables unauthorized access to sensitive data, including the administrator username and password, through specific URL manipulation. With a CVSS score of 7.8 (High) and an EPSS percentile of 0.12947, this vulnerability presents a significant risk due to its low attack complexity and complete confidentiality impact. While not actively exploited in the wild, public exploit code is available via ExploitDB, indicating a potential for future attacks.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:h:entrypass:n5200_active_network_control_panel:-:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.