CVE-2021-47726
PUBLISHED 12/31/2025 83251b91-4cc7-4094-a5c7-464a1b83ea10
Technical Description
NuCom 11N Wireless Router 5.07.90 contains a privilege escalation vulnerability that allows non-privileged users to access administrative credentials through the configuration backup endpoint. Attackers can send a crafted HTTP GET request to the backup configuration page with a specific cookie to retrieve and decode the admin password in Base64 format.
Affected Products
Nucom
NuCom 11N Wireless Router
5.07.90
References
https://www.exploit-db.com/exploits/49634
ExploitDB-49634
https://www.nucom.es
NuCom Vendor Homepage
https://www.zeroscience.mk/en/vulnerabilities/ZSL-2021-5629.php
Zero Science Lab Disclosure (ZSL-2021-5629)
https://www.vulncheck.com/advisories/nucom-n-wireless-router-privilege-escalation-via-configuration-backup
VulnCheck Advisory: NuCom 11N Wireless Router 5.07.90 Privilege Escalation via Configuration Backup
Impact Analysis
Attack Vector Network
Attack Complexity Low
Privileges Required None