ZyXEL NBG-419N Router Multiple Security Vulnerabilities
BID:66794
Info
ZyXEL NBG-419N Router Multiple Security Vulnerabilities
| Bugtraq ID: | 66794 |
| Class: | Unknown |
| CVE: |
CVE-2014-0353 CVE-2014-0354 CVE-2014-0355 CVE-2014-0356 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 11 2014 12:00AM |
| Updated: | Apr 11 2014 12:00AM |
| Credit: | Anonymous |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
ZyXEL NBG-419N Router Multiple Security Vulnerabilities
ZyXEL NBG-419N router is prone to multiple stack-based buffer-overflow, multiple command-injection, and multiple security bypass vulnerabilities.
An attacker can exploit these issues to bypass certain security restrictions and execute arbitrary code or commands in the context of the affected device. This may aid in further attacks.
ZyXEL NBG-419N running firmware version 1.00(BFQ.6)C0 is vulnerable; other versions may also be affected.
ZyXEL NBG-419N router is prone to multiple stack-based buffer-overflow, multiple command-injection, and multiple security bypass vulnerabilities.
An attacker can exploit these issues to bypass certain security restrictions and execute arbitrary code or commands in the context of the affected device. This may aid in further attacks.
ZyXEL NBG-419N running firmware version 1.00(BFQ.6)C0 is vulnerable; other versions may also be affected.
Exploit / POC
ZyXEL NBG-419N Router Multiple Security Vulnerabilities
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
ZyXEL NBG-419N Router Multiple Security Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].