7.5

CVE-2006-2559

Linksys WRT54G Wireless-G Broadband Router allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic.

Data is provided by the National Vulnerability Database (NVD)
LinksysWrt54g Version1.42.3
LinksysWrt54g Version2.00.8
LinksysWrt54g Version2.02.7
LinksysWrt54g Version2.04.4
LinksysWrt54g Version2.04.4_non_default
LinksysWrt54g Version3.01.3
LinksysWrt54g Version3.03.6
LinksysWrt54g Version4.00.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.55% 0.669
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P