PT-2007-2740 · Apple · Airport Extreme
Published
2007-03-07
·
Updated
2017-07-29
·
CVE-2007-1338
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Apple AirPort Extreme (affected versions not specified)
Description
The default configuration of the AirPort utility creates an IPv6 tunnel but does not enable the "Block incoming IPv6 connections" setting. This might allow remote attackers to bypass intended access restrictions by establishing IPv6 sessions that would have been rejected over IPv4.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Airport Extreme