PT-2017-13193 · Ctek · Ctek Skyrouter Series 4400+1
Publicado
2017-10-04
·
Atualizado
2019-10-09
·
CVE-2017-14000
CVSS v3.1
9.4
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L |
Name of the Vulnerable Software and Affected Versions
Ctek SkyRouter Series 4200 and 4400 versions prior to V6.00.11
Description
An issue was discovered that allows a malicious user to access the application without authenticating by accessing a specific URL on the web server.
Recommendations
For versions prior to V6.00.11, update to version V6.00.11 or later to resolve the issue.
Correção
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ctek Skyrouter Series 4200
Ctek Skyrouter Series 4400