Linksys WAG200G Multiple Security Vulnerabilities
BID:57879
Info
Linksys WAG200G Multiple Security Vulnerabilities
| Bugtraq ID: | 57879 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 11 2013 12:00AM |
| Updated: | Feb 11 2013 12:00AM |
| Credit: | m-1-k-3 |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Linksys WAG200G Multiple Security Vulnerabilities
Linksys WAG200G is prone to the following security vulnerabilities:
1. A command-injection vulnerability
2. A security-bypass vulnerability
3. An HTML-injection vulnerability
An attacker can exploit these issues to bypass certain security restrictions, execute arbitrary script code within the context of the browser, steal cookie-based authentication credentials, or inject and execute arbitrary shell commands with in the context of the device; other attacks are also possible.
Linksys WAG200G is prone to the following security vulnerabilities:
1. A command-injection vulnerability
2. A security-bypass vulnerability
3. An HTML-injection vulnerability
An attacker can exploit these issues to bypass certain security restrictions, execute arbitrary script code within the context of the browser, steal cookie-based authentication credentials, or inject and execute arbitrary shell commands with in the context of the device; other attacks are also possible.
Solution / Fix
Linksys WAG200G Multiple Security Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Linksys WAG200G Multiple Security Vulnerabilities
References:
References: