PT-2001-2519 · Alcatel · Alcatel Speed Touch
Published
2001-04-10
·
Updated
2017-07-11
·
CVE-2001-1426
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Alcatel Speed Touch versions KHDSAA.108 through KHDSAA.134
Description
The issue concerns a TFTP server running without a password, allowing remote attackers to modify firmware versions or the device's configurations.
Recommendations
For versions KHDSAA.108 through KHDSAA.134, consider disabling the TFTP server until a patch is available to prevent unauthorized changes to the device's firmware or configurations.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alcatel Speed Touch