Logitec LAN-W300N/R routers with firmware before 2.27 do not properly restrict login access, which allows remote attackers to obtain administrative privileges and modify settings via vectors related to PPPoE authentication.
References
Link | Resource |
---|---|
http://jvndb.jvn.jp/jvndb/JVNDB-2012-000051 | Third Party Advisory VDB Entry |
http://jvn.jp/en/jp/JVN85934986/index.html | Third Party Advisory |
http://www.logitec.co.jp/info/2012/0516.html | Vendor Advisory |
http://www.securityfocus.com/bid/53685 | Third Party Advisory VDB Entry |
http://secunia.com/advisories/49289 | Broken Link |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2012-06-04 10:55
Updated : 2022-02-25 10:40
NVD link : CVE-2012-1250
Mitre link : CVE-2012-1250
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
logitech
- lan-w300n\/rs
- lan-w300n\/ru2_firmware
- lan-w300n\/ru2
- lan-w300n\/r