Sitecom WLM-3500 Hardcoded User Credentials Multiple Authentication Bypass Vulnerabilities
BID:59267
Info
Sitecom WLM-3500 Hardcoded User Credentials Multiple Authentication Bypass Vulnerabilities
| Bugtraq ID: | 59267 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 17 2013 12:00AM |
| Updated: | Apr 17 2013 12:00AM |
| Credit: | Roberto Paleari of Emaze Networks S.p.A |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Sitecom WLM-3500 Hardcoded User Credentials Multiple Authentication Bypass Vulnerabilities
Sitecom WLM-3500 is prone to multiple authentication-bypass vulnerabilities.
Attackers can exploit these issues to gain unauthorized access to the device and perform unauthorized actions. This can lead to a complete compromise of the device.
Sitecom WLM-3500 firmware versions prior to 1.07 are vulnerable.
Sitecom WLM-3500 is prone to multiple authentication-bypass vulnerabilities.
Attackers can exploit these issues to gain unauthorized access to the device and perform unauthorized actions. This can lead to a complete compromise of the device.
Sitecom WLM-3500 firmware versions prior to 1.07 are vulnerable.
Solution / Fix
Sitecom WLM-3500 Hardcoded User Credentials Multiple Authentication Bypass Vulnerabilities
Solution:
Reportedly the issue is fixed, however Symantec has not confirmed this. Please contact the vendor for more information.
Solution:
Reportedly the issue is fixed, however Symantec has not confirmed this. Please contact the vendor for more information.
References
Sitecom WLM-3500 Hardcoded User Credentials Multiple Authentication Bypass Vulnerabilities
References:
References:
- Sitecom Homepage (Sitecom)
- Sitecom WLM-3500 backdoor accounts (Emaze Networks )