CVE detail
CVE-2020-35219 — CVE-2020-35219
Published 2021-01-04 · Modified 2026-06-17 · Vendor asus · Product dsl-n17u_firmware · Source nvd
CRITICAL
severity
CVSS-derived band
0.0167
EPSS probability
exploitation probability, 30d
75.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The ASUS DSL-N17U modem with firmware 1.1.0.2 allows attackers to access the admin interface by changing the admin password without authentication via a POST request to Advanced_System_Content.asp with the uiViewTools_username=admin&uiViewTools_Password= and uiViewTools_PasswordConfirm= substrings.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References