Siemens SpeedStream 5200 HTTP Host Spoofing Authentication Bypass Vulnerability
BID:32203
Info
Siemens SpeedStream 5200 HTTP Host Spoofing Authentication Bypass Vulnerability
| Bugtraq ID: | 32203 |
| Class: | Access Validation Error |
| CVE: |
CVE-2008-6916 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 07 2008 12:00AM |
| Updated: | Apr 16 2015 05:51PM |
| Credit: | hkm |
| Vulnerable: |
Siemens SpeedStream 5200 0 |
| Not Vulnerable: | |
Discussion
Siemens SpeedStream 5200 HTTP Host Spoofing Authentication Bypass Vulnerability
Siemens SpeedStream 5200 are prone to an authentication-bypass vulnerability that may allow attackers to gain unauthorized administrative access to a router's administration interface.
Siemens SpeedStream 5200 are prone to an authentication-bypass vulnerability that may allow attackers to gain unauthorized administrative access to a router's administration interface.
Exploit / POC
Siemens SpeedStream 5200 HTTP Host Spoofing Authentication Bypass Vulnerability
Attackers can exploit this issue using readily available networking utilities.
Attackers can exploit this issue using readily available networking utilities.
Solution / Fix
Siemens SpeedStream 5200 HTTP Host Spoofing Authentication Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Siemens SpeedStream 5200 HTTP Host Spoofing Authentication Bypass Vulnerability
References:
References:
- Siemens Homepage (Siemens)