The UPnP IGD implementation on the Cisco Linksys WRT54GX with firmware 2.00.05, when UPnP is enabled, configures the SOAP server to listen on the WAN port, which allows remote attackers to administer the firewall via SOAP requests.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/357851 | US Government Resource |
http://www.upnp-hacks.org/devices.html | |
http://www.kb.cert.org/vuls/id/357851 | US Government Resource |
http://www.upnp-hacks.org/devices.html |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:32
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.kb.cert.org/vuls/id/357851 - US Government Resource | |
References | () http://www.upnp-hacks.org/devices.html - |
Information
Published : 2011-11-22 11:55
Updated : 2024-11-21 01:32
NVD link : CVE-2011-4500
Mitre link : CVE-2011-4500
CVE.ORG link : CVE-2011-4500
JSON object : View
Products Affected
cisco
- linksys_wrt54gx_router_firmware
linksys
- wrt54gx
CWE
CWE-16
Configuration