QID 591333
Date Published: 2023-02-10
QID 591333: Reolink RLC-410W cgiserver.cgi session creation Denial of Service (DoS) Vulnerability (TALOS-2021-1423)
AFFECTED PRODUCTS
Reolink RLC-410W: v3.0.0.136_20121102
QID Detection Logic:
This QID checks for the Vulnerable version of Reolink RLC-410W using passive scanning.
A denial of service vulnerability exists in the cgiserver.cgi session creation functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to prevent users from logging in. An attacker can send an HTTP request to trigger this vulnerability.
Solution
Customers are advised to refer to CERT MITIGATIONS section TALOS-2021-1423 for affected packages and patching details.
Vendor References
- TALOS-2021-1423 -
talosintelligence.com/vulnerability_reports/TALOS-2021-1423
CVEs related to QID 591333
Software Advisories
| Advisory ID | Software | Component | Link |
|---|