CVE-2008-1262
Summary
| CVE | CVE-2008-1262 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2008-03-10 17:44:00 UTC |
| Updated | 2018-10-11 20:31:00 UTC |
| Description | The administration panel on the Airspan WiMax ProST 4.1 antenna with 6.5.38.0 software does not verify authentication credentials, which allows remote attackers to (1) upload malformed firmware or (2) bind the antenna to a different WiMAX base station via unspecified requests to forms under process_adv/. |
Risk And Classification
Problem Types: CWE-287
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Airspan | Wimax Prost | 4.1 | All | 6.5.38.0 | All |
| Hardware | Airspan | Wimax Prost | 4.1 | All | 6.5.38.0 | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| US-CERT Vulnerability Note VU#248372 | CERT-VN | www.kb.cert.org | US Government Resource |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| airspan4wimax - AirSpan WiMAX MicroMAX | MISC | airspan4wimax.googlepages.com | Exploit |
| H Tech Blog | Hack and Evolve Faster with the Common Techniques | MISC | www.0x000000.com | |
| Airspan ProST WiMAX Device Web Interface Authentication Bypass Vulnerability | BID | www.securityfocus.com | Exploit |
| Airspan WiMAX ProST Web Interface Authentication Bypass - Advisories - Secunia | SECUNIA | secunia.com | Vendor Advisory |
| Router Hacking Challenge | GNUCITIZEN | MISC | www.gnucitizen.org | Exploit |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| ShareMethods Login | CONFIRM | www.sharemethods.net | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.