7.8

CVE-2008-0331

Unspecified vulnerability in Funkwerk System Software before 7.4.1 PATCH 9 for certain Funkwerk Router / VPN devices allows remote attackers to cause a denial of service (panic and reboot) via unspecified DNS requests.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
FunkwerkSystem Software Version <= 7.4.1_patch_8
   FunkwerkX2300
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.67% 0.738
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://osvdb.org/42782
http://secunia.com/advisories/28085
Vendor Advisory
http://www.funkwerk-ec.com/portal/downloadcenter/dateien/x2300/r7401p09/readme_741p9_en.pdf
http://www.securityfocus.com/bid/27314
https://exchange.xforce.ibmcloud.com/vulnerabilities/39731