CVE-2015-2797
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD
Description
Stack-based buffer overflow in AirTies Air 6372, 5760, 5750, 5650TT, 5453, 5444TT, 5443, 5442, 5343, 5342, 5341, and 5021 DSL modems with firmware 1.0.2.0 and earlier allows remote attackers to execute arbitrary code via a long string in the redirect parameter to cgi-bin/login.
Affected (1)
Products: Airties: Air Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.0.2.0 |
| Running on/with | Platform Versions |
|---|---|
Airties Air 5021 | All versions |
Airties Air 5341 | All versions |
Airties Air 5342 | All versions |
Airties Air 5343 | All versions |
Airties Air 5442 | All versions |
Airties Air 5443 | All versions |
Airties Air 5444tt | All versions |
Airties Air 5453 | All versions |
Airties Air 5650tt | All versions |
Airties Air 5750 | All versions |
Airties Air 5760 | All versions |
Airties Air 6372 | All versions |
References (10)
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.