CVE-2018-20387
Description
Bnmux BCW700J 5.20.7, BCW710J 5.30.6a, and BCW710J2 5.30.16 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Bnmux BCW700J/BCW710J/BCW710J2 routers expose credentials via specific SNMP OIDs, allowing remote attackers to discover passwords without authentication.
Vulnerability
The Bnmux BCW700J firmware version 5.20.7, BCW710J version 5.30.6a, and BCW710J2 version 5.30.16 expose credentials via SNMP. Specifically, the OIDs iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 return credential information when queried [1]. No authentication is required to access these OIDs if SNMP is enabled with a default or no community string.
Exploitation
An attacker with network access to the device can send SNMP GET requests to the listed OIDs. The device responds with credential data (likely passwords or usernames). No prior authentication or special privileges are needed; the attacker only needs to know the SNMP community string, which is often left as the default "public".
Impact
Successful exploitation allows an attacker to retrieve credentials from the device, leading to full compromise of the router's administrative interface. This can result in unauthorized access to the network, modification of settings, or further lateral movement.
Mitigation
As of the publication date (2018-12-23), no official patch or firmware update has been disclosed in the available references. Users should disable SNMP if not required, or restrict SNMP access to trusted IPs and change the community string from the default. The affected models may be end-of-life; consult the vendor for updates.
AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/ezelf/sensitivesOids/blob/master/oidpassswordleaks.csvmitrex_refsource_MISC
- misteralfa-hack.blogspot.com/2018/12/stringbleed-y-ahora-que-passwords-leaks.htmlmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.