An issue was discovered on SendQuick Entera and Avera devices before 2HF16. The application failed to check the access control of the request which could result in an attacker being able to shutdown the system.
References
Link | Resource |
---|---|
https://niantech.io/blog/2017/02/05/vulns-multiple-vulns-in-sendquick-entera-avera-sms-gateway-appliances/ | Third Party Advisory |
http://www.securityfocus.com/bid/96031 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2017-02-05 10:59
Updated : 2019-10-02 17:03
NVD link : CVE-2017-5136
Mitre link : CVE-2017-5136
JSON object : View
CWE
CWE-862
Missing Authorization
Products Affected
sendquick
- entera_sms_gateway_firmware
- avera_sms_gateway
- avera_sms_gateway_firmware
- entera_sms_gateway