3Com Wireless 8760 Dual-Radio 11a/b/g PoE Web Administration Authentication Bypass Vulnerability
BID:36400
Info
3Com Wireless 8760 Dual-Radio 11a/b/g PoE Web Administration Authentication Bypass Vulnerability
| Bugtraq ID: | 36400 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 15 2009 12:00AM |
| Updated: | Sep 15 2009 11:01PM |
| Credit: | Yossi Yakubov |
| Vulnerable: |
3Com 3Com Wireless 8760 Dual-Radio 11a/b/g PoE 0 |
| Not Vulnerable: | |
Discussion
3Com Wireless 8760 Dual-Radio 11a/b/g PoE Web Administration Authentication Bypass Vulnerability
The 3Com Wireless 8760 Dual-Radio 11a/b/g PoE router is prone to an authentication-bypass vulnerability because it fails to authenticate users trying to access specific administration applications.
Successful attacks will lead to a compromise of the vulnerable device, which may lead to further attacks.
The 3Com Wireless 8760 Dual-Radio 11a/b/g PoE router is prone to an authentication-bypass vulnerability because it fails to authenticate users trying to access specific administration applications.
Successful attacks will lead to a compromise of the vulnerable device, which may lead to further attacks.
Exploit / POC
3Com Wireless 8760 Dual-Radio 11a/b/g PoE Web Administration Authentication Bypass Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
3Com Wireless 8760 Dual-Radio 11a/b/g PoE Web Administration Authentication Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
3Com Wireless 8760 Dual-Radio 11a/b/g PoE Web Administration Authentication Bypass Vulnerability
References:
References: