CVE Database
/

CVE-2007-5419

Back to search

CVE-2007-5419

Published: Oct 12, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

The 3Com 3CRWER100-75 router with 1.2.10ww software, when enabling an optional virtual server, configures this server to accept all source IP addresses on the external (Internet) interface unless the user selects other options, which might expose the router to unintended incoming traffic from remote attackers, as demonstrated by setting up a virtual server on port 80, which allows remote attackers to access the web management interface.

VendorProductVersions

n/a

n/a

affected
n/a

References

43657
vdb-entry
x_refsource_OSVDB
3217
third-party-advisory
x_refsource_SREASON
26009
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now