PT-2003-2209 · D Link+1 · D-Link Di-614++1
Publicado
2003-12-31
·
Atualizado
2008-09-05
·
CVE-2003-1264
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Longshine Wireless Access Point (WAP) LCS-883R-AC-B (affected versions not specified)
D-Link DI-614+ version 2.0
Description
The issue allows remote attackers to obtain the WEP secret and gain administrator privileges by downloading the configuration file (config.img) and other files without authentication. This is due to a flaw in the TFTP server.
Recommendations
For Longshine Wireless Access Point (WAP) LCS-883R-AC-B, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
For D-Link DI-614+ version 2.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
D-Link Di-614+
Longshine Wireless Access Point