PT-2001-2277 · Zyxel · Zyxel Prestige
Published
2001-08-14
·
Updated
2017-12-19
·
CVE-2001-1135
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
ZyXEL Prestige versions 642R and 642R-I
Description
The issue allows someone on an internal computer to reconfigure the router if the password is known, as the routers' Telnet and FTP ports on the external WAN interface are not filtered from inside access.
Recommendations
For ZyXEL Prestige 642R and 642R-I, restrict access to the Telnet and FTP ports on the external WAN interface from internal computers to minimize the risk of exploitation.
As a temporary workaround, consider changing the password to prevent unauthorized reconfiguration of the router.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Zyxel Prestige