Back to search
CVE-2006-2560
Published: May 24, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
Sitecom WL-153 router firmware before 1.38 allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20183
third-party-advisory
x_refsource_SECUNIA
http://www.securityview.org/how-does-the-upnp-flaw-works.html
x_refsource_MISC
ADV-2006-1912
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now