CVE-2008-1262
Summary
| CVE | CVE-2008-1262 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2008-03-10 17:44:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | The administration panel on the Airspan WiMax ProST 4.1 antenna with 6.5.38.0 software does not verify authentication credentials, which allows remote attackers to (1) upload malformed firmware or (2) bind the antenna to a different WiMAX base station via unspecified requests to forms under process_adv/. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Airspan | Wimax Prost | 4.1 | All | 6.5.38.0 | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| Router Hacking Challenge | GNUCITIZEN | af854a3a-2127-422b-91ae-364da2661108 | www.gnucitizen.org | Exploit |
| airspan4wimax - AirSpan WiMAX MicroMAX | af854a3a-2127-422b-91ae-364da2661108 | airspan4wimax.googlepages.com | Exploit |
| Airspan WiMAX ProST Web Interface Authentication Bypass - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| Airspan ProST WiMAX Device Web Interface Authentication Bypass Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Exploit |
| H Tech Blog | Hack and Evolve Faster with the Common Techniques | af854a3a-2127-422b-91ae-364da2661108 | www.0x000000.com | |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| ShareMethods Login | af854a3a-2127-422b-91ae-364da2661108 | www.sharemethods.net | |
| US-CERT Vulnerability Note VU#248372 | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.