7.5

CVE-2006-2559

Linksys WRT54G Wireless-G Broadband Router allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
LinksysWrt54g Version1.42.3
LinksysWrt54g Version2.00.8
LinksysWrt54g Version2.02.7
LinksysWrt54g Version2.04.4
LinksysWrt54g Version2.04.4_non_default
LinksysWrt54g Version3.01.3
LinksysWrt54g Version3.03.6
LinksysWrt54g Version4.00.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.55% 0.669
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P