Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-1262

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2008-1262
Last Modified 07 Mar 2011 10:06:25
Published 10 Mar 2008 01:44:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-1262

Summary

The administration panel on the Airspan WiMax ProST 4.1 antenna with 6.5.38.0 software does not verify authentication credentials, which allows remote attackers to (1) upload malformed firmware or (2) bind the antenna to a different WiMAX base station via unspecified requests to forms under process_adv/.

Vulnerable Systems


References

CERT-VN - VU#248372

XF - wimaxprost-webinterface-security-bypass(41052)

VUPEN - ADV-2008-0802

CONFIRM - http://www.sharemethods.net/nepal/servlet/open?keeppath=false&aid=29820

BID - 28122

BUGTRAQ - 20080301 The Router Hacking Challenge is Over!

MISC - http://www.gnucitizen.org/projects/router-hacking-challenge/

MISC - http://www.0x000000.com/?i=524

SECUNIA - 29265

MISC - http://airspan4wimax.googlepages.com/


Last Updated: 27 May 2016 10:47:05