Dell TrueMobile 2300 Wireless Broadband Router running firmware 3.0.0.8 and 5.1.1.6, and possibly other versions, allows remote attackers to reset authentication credentials, then change configuration or firmware, via a direct request to apply.cgi with the Page parameter set to adv_password.asp.
Link | Tags |
---|---|
http://securityreason.com/securityalert/242 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23516 | vdb entry |
http://www.idefense.com/application/poi/display?id=348&type=vulnerabilities&flashstatus=true | third party advisory vendor advisory |
http://securitytracker.com/id?1015325 | vdb entry |
http://secunia.com/advisories/17936 | third party advisory |
http://www.vupen.com/english/advisories/2005/2802 | vdb entry |
http://www.securityfocus.com/bid/15770 | vdb entry |