|
|
Info |
Last Modified |
| 6 months ago |
|
|
|
|
Description |
Linksys WRT54GXv2 contains a flaw that may allow a malicious user to bypass security restrictions by sending an "AddPortMapping" command to the WAN port with universal plug and play (UPnP) enabled.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Infrastructure
Impact:
Loss of Integrity
Exploit:
Exploit Unknown
Disclosure:
OSVDB Verified
|
|
Solution |
Upgrade to version 2.00.08 or higher, as it has been reported to fix this vulnerability. It is also possible to correct the flaw by implementing the following workaround(s):
If universal plug and play (UPnP) is not needed or during periods of inactivity then disable the service. See vendor documentation for details.
|
|
Products |
|
WRT54GXv2
 |
2.00.05 |
|
|
References |
- Secunia Advisory ID:
22326
|
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|