Report: CVE-2019-25472 - IntelBras Telefone IP TIP200/200 LITE Arbitrary File Read via dumpConfigFile
CVE ID :CVE-2019-25472 Published : March 11, 2026, 6:23 p.m. | 1 hour, 2 minutes ago Description :IntelBras Telefone IP TIP200 and 200 LITE contain an unauthenticated arbitrary file read vulnerability in the dumpConfigFile function accessible via the cgiServer.exx endpoint. Attackers can send GET requests to /cgi-bin/cgiServer.exx with the command parameter containing dumpConfigFile() to read sensitive files including /etc/shadow and configuration files without proper authorization. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...