CVE-2024-37664

Redmi router RB03 v1.0.57 is vulnerable to TCP DoS or hijacking attacks. An attacker in the same WLAN as the victim can disconnect or hijack the traffic between the victim and any remote server by sending out forged TCP RST messages to evict NAT mappings in the router.
CVSS

No CVSS.

Configurations

No configuration.

History

01 Aug 2024, 13:54

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 0.0
CWE CWE-940

20 Jun 2024, 12:44

Type Values Removed Values Added
Summary
  • (es) El enrutador Redmi RB03 v1.0.57 es vulnerable a TCP DoS o ataques de secuestro. Un atacante en la misma WLAN que la víctima puede desconectar o secuestrar el tráfico entre la víctima y cualquier servidor remoto enviando mensajes TCP RST falsificados para desalojar las asignaciones NAT en el enrutador.

17 Jun 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-17 18:15

Updated : 2024-08-01 13:54


NVD link : CVE-2024-37664

Mitre link : CVE-2024-37664

CVE.ORG link : CVE-2024-37664


JSON object : View

Products Affected

No product.

CWE
CWE-940

Improper Verification of Source of a Communication Channel