Back to search
CVE-2006-2562
Published: May 24, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
ZyXEL P-335WT router allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.securityview.org/how-does-the-upnp-flaw-works.html
x_refsource_MISC
zyxel-upnp-security-bypass(26710)
vdb-entry
x_refsource_XF
20184
third-party-advisory
x_refsource_SECUNIA
ADV-2006-1910
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now