Linksys WAP54Gv3 Wireless Router Debug Credentials Security Bypass Vulnerability
BID:40648
Info
Linksys WAP54Gv3 Wireless Router Debug Credentials Security Bypass Vulnerability
| Bugtraq ID: | 40648 |
| Class: | Design Error |
| CVE: |
CVE-2010-1573 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 08 2010 12:00AM |
| Updated: | Apr 13 2015 09:02PM |
| Credit: | Cristofaro Mune |
| Vulnerable: |
Linksys WAP54Gv3 3.5.3 (Europe) Linksys WAP54Gv3 3.4.3 (US) |
| Not Vulnerable: | |
Discussion
Linksys WAP54Gv3 Wireless Router Debug Credentials Security Bypass Vulnerability
Linksys WAP54Gv3 wireless router devices are prone to a security-bypass vulnerability because they allow access to debugging scripts through hard coded credentials.
Successful exploits allow attackers to gain privileged access to the device; other attacks may also be possible.
The following firmware versions are vulnerable:
3.05.03 (Europe)
3.04.03 (US)
Other versions or devices may also be affected.
Linksys WAP54Gv3 wireless router devices are prone to a security-bypass vulnerability because they allow access to debugging scripts through hard coded credentials.
Successful exploits allow attackers to gain privileged access to the device; other attacks may also be possible.
The following firmware versions are vulnerable:
3.05.03 (Europe)
3.04.03 (US)
Other versions or devices may also be affected.
Exploit / POC
Linksys WAP54Gv3 Wireless Router Debug Credentials Security Bypass Vulnerability
An attacker can carry out this attack using readily available network utilities.
An attacker can carry out this attack using readily available network utilities.
References
Linksys WAP54Gv3 Wireless Router Debug Credentials Security Bypass Vulnerability
References:
References:
- Linksys Homepage (Linksys)
- Linksys WAP54Gv3 Remote Debug Root Shell (Cristofaro Mune)
- IS-2010-002 - Linksys WAP54Gv3 Remote Debug Root Shell (Cristofaro Mune
)