PT-2013-6187 · Satech · Satechi Travel Router
Publicado
2013-11-30
·
Atualizado
2014-03-05
·
CVE-2013-6918
CVSS v2.0
5.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Satechi travel router version 1.5
Description
The issue concerns the web interface of the Satechi travel router. When Wi-Fi is used for WAN access, the console is exposed without authentication on the WAN IP address. This exposure occurs regardless of the "Web Management via WAN" setting, allowing remote attackers to bypass intended access restrictions via HTTP requests.
Recommendations
For Satechi travel router version 1.5, as a temporary workaround, consider disabling the web interface when using Wi-Fi for WAN access until a patch is available. Restrict access to the web management interface to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Satechi Travel Router