CVE-2013-7293

The ASUS WL-330NUL router has a configuration process that relies on accessing the 192.168.1.1 IP address, but the documentation advises users to instead access a DNS hostname that does not always resolve to 192.168.1.1, which makes it easier for remote attackers to hijack the configuration traffic by controlling the server associated with that hostname.
References
Link Resource
http://www.kb.cert.org/vuls/id/191750 Third Party Advisory US Government Resource
http://www.securityfocus.com/bid/64799
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:h:asus:wl-330nul:-:*:*:*:*:*:*:*

Information

Published : 2014-01-15 08:13

Updated : 2016-12-30 18:59


NVD link : CVE-2013-7293

Mitre link : CVE-2013-7293


JSON object : View

CWE
CWE-16

Configuration

CWE-284

Improper Access Control

Advertisement

dedicated server usa

Products Affected

asus

  • wl-330nul