CVE-2011-4501
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD
Description
The UPnP IGD implementation in Edimax EdiLinux on the Edimax BR-6104K with firmware before 3.25, Edimax 6114Wg, Canyon-Tech CN-WF512 with firmware 1.83, Canyon-Tech CN-WF514 with firmware 2.08, Sitecom WL-153 with firmware before 1.39, and Sweex LB000021 with firmware 3.15 allows remote attackers to establish arbitrary port mappings by sending a UPnP AddPortMapping action in a SOAP request to the WAN interface, related to an "external forwarding" vulnerability.
Affected (14)
Products: Edimax: Br 6104k Router Firmware, Br 6104k, 6114wg Router Firmware, 6114wg · Canyon Tech: Cn Wf512 Router Firmware, Cn Wf514 Router Firmware, Cn Wf512, Cn Wf514 · Sitecom: Wl 153 Router Firmware, Wl 153 · +1 more
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 3.21 | |
| All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.83 | |
| Version 2.08 | |
| All versions | |
| All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.83 | |
| All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.31 | |
| All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 3.15 | |
| All versions |
Related CWEs
References (6)
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.